Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in OpenNMS before 1.5.94 allow remote attackers to inject arbitrary web script or HTML via (1) the j_username parameter to j_acegi_security_check, (2) the username parameter to notification/list.jsp, and (3) the filter parameter to event/list.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OpenNMS 多个跨站脚本攻击漏洞
Vulnerability Description
OpenNMS是一个企业级基于Java/XML的分布式网络和系统监控管理平台。 OpenNMS 1.5.94的之前版本中存在多个跨站脚本攻击漏洞,远程攻击者可以通过(1)对j_acegi_security_check的 j_username参数 , (2)对 notification/list.jsp的用户名参数, 以及 (3)对 event/list的 过滤参数,以执行任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A