Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to inject arbitrary web script or HTML via components in the samples (aka _samples) directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FCKeditor connectors模块'samples'多个跨站脚本及目录遍历漏洞
Vulnerability Description
FCKeditor是一款开放源码的HTML文本编辑器 。 FCKeditor没有正确地验证用户对多个connector模块所传送的输入,远程攻击者可以利用samples目录中的组件注入任意脚本或HTML,或通过目录遍历攻击上传恶意文件 。
CVSS Information
N/A
Vulnerability Type
N/A