Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A reflected cross-site scripting (XSS) vulnerability in the component /ui/diagnostics/log/core/ of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows attackers to inject arbitrary JavaScript via the URL path.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Deciso OPNsense 跨站脚本漏洞
Vulnerability Description
Deciso OPNsense是荷兰Deciso公司的一套基于FreeBSD的开源防火墙和路由软件。 OPNsense 23.7之前版本存在跨站脚本漏洞,该漏洞源于组件/ui/diagnostics/log/core/存在反射型跨站脚本(XSS)漏洞。攻击者可利用该漏洞通过URL路径注入任意JavaScript代码。
CVSS Information
N/A
Vulnerability Type
N/A