Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Zimbra 2013 has XSS in aspell.php
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Zimbra aspell.php 跨站脚本漏洞
Vulnerability Description
Zimbra是美国Zimbra公司的一款开源的协同办公套件,它包括WebMail、日历、通信录、Web文档管理和创作等。 Zimbra中的aspell.php中存在跨站脚本漏洞。攻击者可利用该漏洞在受影响站点的上下文中的受信用户的浏览器中执行任意脚本代码,这将导致攻击者窃取基于COOKIE的身份验证凭证并发起其它攻击。
CVSS Information
N/A
Vulnerability Type
N/A