Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in AlgoSec FireFlow 6.3-b230 allows remote attackers to inject arbitrary web script or HTML via a user signature to SelfService/Prefs.html.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AlogoSec FireFlow 跨站脚本漏洞
Vulnerability Description
AlogoSec FireFlow是美国AlogoSec公司的一个AlgoSec安全管理套件(ASMS)中的可自动控制安全策略变更工作流的组件,它支持降低处理防火墙变更的时间、自动处理整个变更流程的生命周期等。 AlogoSec FireFlow 6.3-b230版本中的SelfService/Prefs.html页面存在跨站脚本漏洞。远程攻击者可借助用户签名利用该漏洞注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A