漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Webmin 2.021. A Cross-site Scripting (XSS) Bypass vulnerability was discovered in the file upload functionality. Normally, the application restricts the upload of certain file types such as .svg, .php, etc., and displays an error message if a prohibited file type is detected. However, by following certain steps, an attacker can bypass these restrictions and inject malicious code.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Webmin 跨站脚本漏洞
Vulnerability Description
Webmin是Webmin社区的一套基于Web的用于类Unix操作系统中的系统管理工具。 Webmin 2.021 版本存在安全漏洞,该漏洞源于文件上传功能中发现跨站点脚本(XSS)绕过漏洞。通常,应用程序会限制某些文件类型(例如.svg、.php 等)的上传,并在检测到禁止的文件类型时显示错误消息。但是,通过执行某些步骤,攻击者可以绕过这些限制并注入恶意代码。
CVSS Information
N/A
Vulnerability Type
N/A