Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in lists/admin/index.php in phpList before 2.10.19 allow remote attackers to inject arbitrary web script or HTML via the (1) remote_user, (2) remote_database, (3) remote_userprefix, (4) remote_password, or (5) remote_prefix parameter to the import4 page; or the (6) id parameter to the bouncerule page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
phpList 多个跨站脚本漏洞
Vulnerability Description
PhpList是英国PhpList公司的一款基于PHP的用于管理邮件列表的开源软件。 phpList 2.10.19之前版本中的lists/admin/index.php in phpList中存在多个跨站脚本(XSS)漏洞。远程攻击者可利用这些漏洞通过传递到import4页面中的(1)remote_user(2)remote_database(3)remote_userprefix(4)remote_password或(5)remote_prefix参数或(6)传送到bouncerule页面中的id参数
CVSS Information
N/A
Vulnerability Type
N/A