Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The file upload function in the "QWKalkulation" tool of baltic-it TOPqw Webportal v1.35.287.1 (fixed in version 1.35.291), in /Apps/TOPqw/QWKalkulation/QWKalkulation.aspx, is vulnerable to Cross-Site Scripting (XSS). To exploit the persistent XSS vulnerability, an attacker has to be authenticated to the application that uses the "TOPqw Webportal" as a software. When authenticated, the attacker can persistently place the malicious JavaScript code in the "QWKalkulation" menu.'
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
baltic-it TOPqw Webportal 安全漏洞
Vulnerability Description
baltic-it TOPqw Webportal是德国baltic-it公司的一个社会服务提供商开发的 Web 应用程序。可用于公开查看有关各种设施的信息。 baltic-it TOPqw Webportal v1.35.287.1版本存在安全漏洞,该漏洞源于容易受到跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A