Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Mulatiple cross-site scripting (XSS) vulnerabilities in PD9 Software MegaBBS 2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) toid parameter to send-private-message.asp and the (2) redirect parameter to admin/impersonate.asp. NOTE: vector 2 requires authentication.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PD9 MegaBBS 多个跨站脚本攻击漏洞
Vulnerability Description
PD9 Software MegaBBS 2.2中存在的多个跨站脚本攻击漏洞会。远程攻击者通过(1)对send-private-message.asp的toid参数 以及 (2)对admin/impersonate.asp的转向参数来注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A