Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Open redirect in proxy.php in FlashCanvas before 1.6 allows remote attackers to redirect users to arbitrary web sites and conduct cross-site scripting (XSS) attacks via the HTTP Referer header.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FlashCanvas 跨站脚本漏洞
Vulnerability Description
FlashCanvas是一款能够将HTML5 Canvas添加到Internet Explorer浏览器的JavaScript库,它通过Flash绘图API渲染形状和图片。 FlashCanvas 1.6之前版本中存在跨站脚本漏洞,该漏洞源于程序没有正确过滤用户提交的输入。攻击者可利用该漏洞执行任意脚本代码,这可能导致攻击者窃取基于cookie的身份认证并发起其它攻击。
CVSS Information
N/A
Vulnerability Type
N/A