漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
An issue was discovered on Vera VeraEdge 1.7.19 and Veralite 1.7.481 devices. The device provides a shell script called connect.sh which is supposed to return a specific cookie for the user when the user is authenticated to https://home.getvera.com. One of the parameters retrieved by this script is "RedirectURL". However, the application lacks strict input validation of this parameter and this allows an attacker to execute the client-side code on this application.
漏洞信息
N/A
漏洞
N/A
漏洞
Vera VeraEdge和Veralite 安全漏洞
漏洞信息
Vera VeraEdge 1.7.19版本和Veralite 1.7.481版本中存在安全漏洞,该漏洞源于程序没有对‘RedirectURL’参数执行严格的输入验证。攻击者可利用该漏洞在应用程序上执行客户端脚本。
漏洞信息
N/A
漏洞
N/A