Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in web2ldap 1.1.x before 1.1.49 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "displaying group DN and entry data in group administration UI."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Web2ldap 跨站脚本漏洞
Vulnerability Description
Web2ldap是一套基于Web的LDAPv3(轻量目录访问协议)客户端程序。 Web2ldap 1.1.49之前的1.1.x版本中存在跨站脚本漏洞,该漏洞源于组管理用户界面(UI)在显示组DN和项目数据之前应用程序没有充分过滤用户的输入数据。远程攻击者可利用该漏洞注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A