漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
The ASG/ProxySG FTP proxy WebFTP mode allows intercepting FTP connections where a user accesses an FTP server via a ftp:// URL in a web browser. A stored cross-site scripting (XSS) vulnerability in the WebFTP mode allows a remote attacker to inject malicious JavaScript code in ASG/ProxySG's web listing of a remote FTP server. Exploiting the vulnerability requires the attacker to be able to upload crafted files to the remote FTP server. Affected versions: ASG 6.6 and 6.7 prior to 6.7.4.2; ProxySG 6.5 prior to 6.5.10.15, 6.6, and 6.7 prior to 6.7.4.2.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Symantec Advanced Secure Gateway和ProxySG 跨站脚本漏洞
Vulnerability Description
Symantec Advanced Secure Gateway和Symantec ProxySG都是美国赛门铁克(Symantec)公司的一款安全网关设备。 Symantec ASG和ProxySG中存在跨站脚本漏洞。该漏洞源于WEB应用缺少对客户端数据的正确验证。攻击者可利用该漏洞执行客户端代码。以下产品及版本受到影响:Symantec ASG 6.7版本,6.6版本;ProxySG 6.7版本,6.6版本,6.5版本。
CVSS Information
N/A
Vulnerability Type
N/A