Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PhpIPAM v1.4.4 allows an authenticated admin user to inject persistent JavaScript code inside the "Site title" parameter while updating the site settings. The "Site title" setting is injected in several locations which triggers the XSS.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
phpIPAM 跨站脚本漏洞
Vulnerability Description
phpIPAM是一套开源的基于PHP和MySQL的IP地址管理应用程序(IPAM)。 PhpIPAM v1.4.4版本存在跨站脚本漏洞,该漏洞源于经过身份验证的管理员用户在更新站点设置时,可在Site title参数内注入持久的JavaScript代码。
CVSS Information
N/A
Vulnerability Type
N/A