Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Viki Vera 4.9.1.26180. An attacker could set a user's last name to an XSS Payload, and read another user's cookie and use that to login to the application.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Viki Solutions Viki Vera 跨站脚本漏洞
Vulnerability Description
Viki Solutions Viki Vera是加拿大Viki Solutions公司的一套工作流程自定义平台。该平台支持文件上传、作业管理等功能。 Viki Vera 4.9.1.26180 存在安全漏洞,攻击者可利用该漏洞可以将用户的姓氏设置为有效负载,然后读取另一个用户的cookie,并使用该cookie登录到应用程序。
CVSS Information
N/A
Vulnerability Type
N/A