Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross Site Scripting vulnerability found in : louislam Uptime Kuma v.1.19.6 and before allows a remote attacker to execute arbitrary commands via the description, title, footer, and incident creation parameter of the status_page.js endpoint.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Uptime Kuma 跨站脚本漏洞
Vulnerability Description
Uptime Kuma是Louis Lam个人开发者的一个易于使用的自托管监控工具。 Uptime Kuma v.1.19.6版本及之前版本存在跨站脚本漏洞。攻击者利用该漏洞通过status_page.js端点的description、title、footer和incident creation参数执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A