Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in flowplayer.swf in the Flash fallback feature in Flowplayer HTML5 5.4.3 allows remote attackers to inject arbitrary web script or HTML by using URL encoding within the callback parameter name. NOTE: this vulnerability exists because of an incomplete fix for CVE-2013-7342.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Flowplayer HTML5 跨站脚本漏洞
Vulnerability Description
Flowplayer HTML5是芬兰Flowplayer公司的一款HTML5视频播放器产品。该产品支持video标签功能,可在网页中添加视频。 Flowplayer HTML5 5.4.3版本的Flash fallback功能中的flowplayer.swf文件存在跨站脚本漏洞。远程攻击者可通过使用回调参数名称中的URL编码利用该漏洞注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A