Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in WSO2 Enterprise Integrator 6.4.0. A Reflected Cross-Site Scripting (XSS) vulnerability has been identified in the Management Console under /carbon/ndatasource/validateconnection/ajaxprocessor.jsp via the driver parameter. Session hijacking or similar attacks would not be possible.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WSO2 Enterprise Integrator 跨站脚本漏洞
Vulnerability Description
WSO2 Enterprise Integrator是美国WSO2公司的一套开源的混合集成平台。该平台支持多个应用程序之间进行通信。 WSO2 Enterprise Integrator 6.4.0版本存在安全漏洞,该漏洞源于其管理控制台/carbon/ndatasource/validateconnection/ajaxprocessor.jsp组件对driver参数的操作存在反射型跨站点脚本。
CVSS Information
N/A
Vulnerability Type
N/A