Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in apps/web/vs_diag.cgi in the DAAP extension in Banshee 1.4.2 allows remote attackers to inject arbitrary web script or HTML via the server parameter, which is not properly handled in an error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Banshee-project Banshee'apps/web/vs_diag.cgi'跨站脚本攻击漏洞
Vulnerability Description
Banshee是一款linux平台下的媒体播放器。 Banshee 1.4.2版本的DAAP扩展名中的apps/web/vs_diag.cgi存在跨站脚本攻击漏洞。 远程攻击者可以借助服务器参数,注入任意的web脚本或HTML。该漏洞未在出错报告中得带有效处理。
CVSS Information
N/A
Vulnerability Type
N/A