Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Knowage Suite before 7.4 is vulnerable to reflected cross-site scripting (XSS). An attacker can inject arbitrary web script in /restful-services/publish via the 'EXEC_FROM' parameter that can lead to data leakage.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Knowage 跨站脚本漏洞
Vulnerability Description
Knowage是意大利Knowage公司的一套用于在传统资源和大数据系统上进行现代业务分析的开源套件。 Knowage Suite before 7.4 存在安全漏洞,攻击者可利用该漏洞通过“EXEC FROM”参数在restful服务发布中注入任意web脚本,这可能导致数据泄漏。
CVSS Information
N/A
Vulnerability Type
N/A