Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Gallarific Free Edition allow remote attackers to inject arbitrary web script or HTML via (1) the e-mail address, (2) a comment, which is not properly handled during moderation, and (3) the tag parameter to gallery/tags.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gallarific 多个跨站脚本攻击漏洞
Vulnerability Description
Gallarific是一款基于PHP的免费图片库管理软件。 Gallarific免费版存在多个跨站脚本攻击漏洞。远程攻击者可以借助(1)电子邮件地址、(2)一个评论和(3)到gallery/tags.php的标签参数,注入任意的web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A