Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SocuSoft Flash Slideshow Maker Professional through v5.20, when the advanced configuration is used, has an xml_path HTTP parameter that trusts user-supplied input, in conjunction with an unsafe XML configuration file. This has resultant content forgery, cross site scripting, and unvalidated redirection issues.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SocuSoft Flash Slideshow Maker Professional 跨站请求伪造漏洞
Vulnerability Description
SocuSoft Flash Slideshow Maker Professional是中国SocuSoft公司的一套Flash相册制作工具。 SocuSoft Flash Slideshow Maker Professional 5.20及之前的版本中存在跨站请求伪造漏洞。远程攻击者可利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A