Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in Vanilla Forums before 2.0.17.6 allows remote attackers to inject arbitrary web script or HTML via the p parameter to an unspecified component, a different vulnerability than CVE-2011-0526.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Vanilla Forums跨站脚本攻击漏洞
Vulnerability Description
Vanilla Forums 是一个开源,符合标准的,多语言,支持主题和插件拓展的网络论坛。 Vanilla Forums 2.0.17.6之前版本中存在跨站脚本攻击漏洞。远程攻击者可以借助向未明组件传递的p参数注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A