Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in lua/host_details.lua in ntopng 1.1 allows remote attackers to inject arbitrary web script or HTML via the host parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ntopng‘lua/host_details.lua’跨站脚本漏洞
Vulnerability Description
ntopng(又名ntop)是意大利ntop公司的一套新一代跨平台基于Web的网络流量分析和监控的工具。该工具支持自动从网络中识别有用的信息、将截获的数据包转换成易于识别的格式和对网络环境中通信失败的情况进行分析等。 ntopng 1.1版本的lua/host_details.lua文件中存在跨站脚本漏洞。远程攻击者可借助‘host’参数利用该漏洞注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A