Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A stored cross-site scripting (XSS) vulnerability in the Add function of Eramba GRC Software c2.8.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the KPI Title text field.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Eramba 跨站脚本漏洞
Vulnerability Description
Eramba是英国Eramba公司的一款开源的企业级IT治理应用程序。该程序具有IT安全、合规性审计分析等功能。 Eramba GRC Software c2.8.1版本存在安全漏洞,该漏洞源于其Add功能的KPI Title文本字段允许攻击者注入精心制作的有效载荷实现任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A