Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
MediaCAST 8 and earlier allows remote attackers to have an unspecified impact via a (1) CP_RIGHTSOURCE or (2) bdclient_Inventive cookie to the default URI under inventivex/managetraining/, related to an "XML injection" issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Inventivetec MediaCAST XML注入漏洞
Vulnerability Description
MediaCAST是一个开放的和可互操作的数字内容管理和视频/音频流解决方案。 MediaCAST 8及其早期版本中存在XML注入漏洞。向inventivex/managetraining发送的CP_RIGHTSOURCE或CP_ENLARGESTYLE cookie值在使用之前没有经过正确过滤,该漏洞可引起未明影响。
CVSS Information
N/A
Vulnerability Type
N/A