Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Reflected XSS issues in GateManager
Vulnerability Description
Cross-site Scripting (XSS) vulnerability in Web UI of Secomea GateManager allows phishing attacker to inject javascript or html into logged in user session.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
Secomea GateManager 跨站脚本漏洞
Vulnerability Description
Secomea GateManager是丹麦Secomea公司的一款远程访问服务器产品。 Secomea GateManager 9.7 之前版本存在安全漏洞,该漏洞源于 Secomea GateManager 的 Web UI 中存在跨站点脚本(XSS)漏洞,允许网络钓鱼攻击者将 javascript 或 html 注入登录的用户会话中。
CVSS Information
N/A
Vulnerability Type
N/A