Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in BTITeam XBTIT. By using String.replace and eval, it is possible to bypass the includes/crk_protection.php anti-XSS mechanism that looks for a number of dangerous fingerprints.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BTITeam XBTIT 安全漏洞
Vulnerability Description
BTITeam XBTIT是一套开源的bittorrent跟踪系统。 BTITeam XBTIT中存在安全漏洞。攻击者可借助‘String.replace’函数和‘eval’函数利用该漏洞绕过includes/crk_protection.php脚本的防跨站脚本机制,进而执行任意JavaScript代码。
CVSS Information
N/A
Vulnerability Type
N/A