Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in POSH (aka Posh portal or Portaneo) 3.0 through 3.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) error parameter to /includes/plugins/mobile/scripts/login.php or (2) id parameter to portal/openrssarticle.php
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
POSH 跨站脚本漏洞
Vulnerability Description
POSH是一套开源的基于PHP且可定制的社交小部件门户系统。 POSH 3.0版本至3.2.1版本中存在任意URI重定向漏洞,该漏洞源于应用程序没有正确过滤用户提交的输入。攻击者可利用该漏洞重定向用户到恶意的网站,实施调用攻击。
CVSS Information
N/A
Vulnerability Type
N/A