Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in AIST NetCat 3.12 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) form and (2) control parameters to FCKeditor/neditor.php, and the (3) path parameter to admin/siteinfo/iframe.inc.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AIST Netcat多参数跨站攻击漏洞
Vulnerability Description
Netcat 是一款简单的Unix工具,使用UDP和TCP协议。 它是一个可靠的容易被其他程序所启用的后台操作工具,同时它也被用作网络的测试工具或黑客工具。 AIST NetCat 3.12 及其早期版本中存在多个跨站脚本攻击漏洞。远程攻击者可以借助(1) form和(2) 对FCKeditor/neditor.php的控制参数,以及(3)对admin/siteinfo/iframe.inc.php的路径参数,注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A