Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the HTTP Option in IBM Sterling Connect:Enterprise 1.3 before 1.3.0.2 iFix 1 and 1.4 before 1.4.0.0 iFix 1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a "cross-frame scripting" issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Sterling Connect:Enterprise HTTP Option 跨框架脚本漏洞
Vulnerability Description
IBM Sterling Connect:Enterprise是美国IBM公司的一款点到点文件传输软件。该软件用于实现企业内和企业间的大容量、安全可靠的文件交付。 IBM Sterling Connect:Enterprise 1.3和1.4版本HTTP Option中存在跨框架脚本漏洞,该漏洞源于框架没有正确过滤用户提交的输入。远程攻击者可利用该漏洞监视并捕获用户的输入。
CVSS Information
N/A
Vulnerability Type
N/A