漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
as include.cdn.php getFullURL cross site scripting
Vulnerability Description
A vulnerability classified as problematic was found in as. This vulnerability affects the function getFullURL of the file include.cdn.php. The manipulation leads to cross site scripting. The attack can be initiated remotely. The name of the patch is 4acad1e3d2c34c017473ceea442fb3e3e078b2bd. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-216208.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
对消息或数据结构的处理不恰当
Vulnerability Title
andrewsauder as 安全漏洞
Vulnerability Description
andrewsauder as是一个CMS。 andrewsauder as存在安全漏洞,该漏洞源于其include.cdn.php文件的getFullURL函数允许攻击者实现跨站脚本。
CVSS Information
N/A
Vulnerability Type
N/A