Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in the administration subsystem in Gallery 2 before 2.3.2 and 3 before 3.0.3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gallery跨站脚本漏洞
Vulnerability Description
Gallery是美国软件开发者Bharat Mediratta所研发的一款基于Web的开源相册管理器。该管理器支持对相片自动生成缩略图、改变大小、排序等。 Gallery中存在多个跨站脚本漏洞,这些漏洞源于某些未明输入在被返回给用户之前未经正确过滤。攻击者可利用这些漏洞在受影响站点上下文的用户浏览器会话上执行任意HTML和脚本代码。Gallery 2.3.2之前版本和3.0.3版本中存在这些漏洞。
CVSS Information
N/A
Vulnerability Type
N/A