Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in the respond_error function in routing.py in Eugene Pankov Ajenti before 1.2.21.7 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) resources.js or (2) resources.css in ajenti:static/, related to the traceback page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ajenti ‘respond_error’函数跨站脚本漏洞
Vulnerability Description
Eugene Pankov Ajenti是白俄罗斯软件开发者Eugene Pankov所研发的一套基于Web的开源服务器管理系统。该系统附带多种预制插件,用于配置和监控服务器软件和服务,如Apache、计划任务(Cron)等。 Eugene Pankov Ajenti 1.2.21.6及之前版本的routing.py文件中的‘respond_error’函数存在跨站脚本漏洞,该漏洞源于ajenti:static/resources.js和ajenti:static/resources脚本文件没有充分过滤‘
CVSS Information
N/A
Vulnerability Type
N/A