Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/admin-ajax.php request with the meta[title] parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Envira Gallery Lite 跨站脚本漏洞
Vulnerability Description
Envira Gallery Lite是中国Envira Gallery公司的一个为Wordpress提供响应式图库功能的插件。 Envira Gallery Lite 1.8.3.2 存在跨站脚本漏洞,该漏洞源于程序接受了恶意的客户端脚本,而没有进行适当的检测,攻击者可利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A