Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A cross-site scripting (XSS) vulnerability in Skoruba IdentityServer4.Admin before 2.0.0 via unencoded value passed to the data-secret-value parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IdentityServer4.Admin 跨站脚本漏洞
Vulnerability Description
IdentityServer4.Admin是捷克Jan Škoruba个人开发者的用于 IdentityServer4 和 Asp.Net Core Identity 的管理。 IdentityServer4.Admin 2.0.0 之前版本存在安全漏洞,攻击者利用该漏洞可通过传递给 data-secret-value 参数的未编码值进行跨站点脚本(XSS)攻击。
CVSS Information
N/A
Vulnerability Type
N/A