Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Cross-site Scripting vulnerability in PHPMemcachedAdmin
Vulnerability Description
A critical flaw has been identified in elijaa/phpmemcachedadmin affecting version 1.3.0, specifically related to a stored XSS vulnerability. This vulnerability allows malicious actors to insert a carefully crafted JavaScript payload. The issue arises from improper encoding of user-controlled entries in the "/pmcadmin/configure.php" parameter.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
PHPMemcachedAdmin 跨站脚本漏洞
Vulnerability Description
PHPMemcachedAdmin是Cyrille Mahieux个人开发者的一个 memcached 的图形独立管理工具。 PHPMemcachedAdmin 1.3.0 版本存在跨站脚本漏洞,该漏洞源于“/pmcadmin/configure.php”参数中用户控制条目的编码不当。
CVSS Information
N/A
Vulnerability Type
N/A