漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
The QAD Search Server is vulnerable to Stored Cross-Site Scripting (XSS) in versions up to, and including, 1.0.0.315 due to insufficient checks on indexes. This makes it possible for unauthenticated attackers to create a new index and inject a malicious web script into its name, that will execute whenever a user accesses the search page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
QAD Search Server 跨站脚本漏洞
Vulnerability Description
QAD Search Server是美国QAD公司的一款搜索服务器应用程序。 QAD Search Server 1.0.0.315及之前版本存在安全漏洞,该漏洞源于容易受到存储型跨站脚本(XSS)攻击,未经身份验证的攻击者可以创建新索引并注入恶意Web脚本。
CVSS Information
N/A
Vulnerability Type
N/A