Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in Lutim before 0.8 might allow remote attackers to inject arbitrary web script or HTML via a crafted filename that is mishandled in an upload notification and in the myfiles component, if the attacker can convince the victim to proceed with an upload despite the appearance of an XSS payload in the filename.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Lutim 跨站脚本漏洞
Vulnerability Description
Lutim是一套用于存储、查看、下载、共享图像的工具。 Lutim 0.8之前的版本中存在跨站脚本漏洞。远程攻击者可借助特制的文件名利用该漏洞注入任意的Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A