Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A reflected XSS vulnerability exists in REDCap before 12.04.18 in the Alerts & Notifications upload feature. A crafted CSV file will, when uploaded, trigger arbitrary JavaScript code execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
REDCap 跨站脚本漏洞
Vulnerability Description
REDCap是一款数据收集和管理Web应用程序。 REDCap 12.04.18之前的版本存在安全漏洞,该漏洞源于其Alerts & Notifications上传功能允许攻击者上传精心制作的CSV文件实现反射型跨站脚本导致任意JavaScript代码执行。
CVSS Information
N/A
Vulnerability Type
N/A