Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in index.php in Vanilla Forums before 2.0.17 allows remote attackers to inject arbitrary web script or HTML via the Target parameter in a /entry/signin action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Vanilla Forums index.php跨站脚本攻击漏洞
Vulnerability Description
Vanilla Forums 是一个开源,符合标准的,多语言,支持主题和插件拓展的网络论坛。 Vanilla Forums 2.0.17之前版本中的index.php中存在跨站脚本攻击漏洞。远程攻击者可以借助/entry/signin操作中的Target参数注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A