漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
HCL iControl was affected by Export CSV - CSV Injection vulnerability.
Vulnerability Description
HCL iControl was affected by Export CSV - CSV Injection vulnerability. It is vulnerable to a reflected cross-site scripting vulnerability. This was caused by an insufficient sanitation of input parameters. .
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
CWE-1236
Vulnerability Title
HCL iControl 安全漏洞
Vulnerability Description
HCL iControl是印度HCL公司的一个IT基础设施监控与自动化运维平台。 HCL iControl存在安全漏洞,该漏洞源于导出CSV时存在CSV注入,由于输入参数清理不足,可能导致反射型跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A