漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Dovestones Softwares ADPhonebook <4.0.1.1 has a reflected cross-site scripting (XSS) vulnerability in the search parameter of the /ADPhonebook?Department=HR endpoint. User-supplied input is reflected in the HTTP response without proper input validation or output encoding, allowing execution of arbitrary JavaScript in the victim's browser.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Infoopia Dovestones ADPhonebook 安全漏洞
Vulnerability Description
Infoopia Dovestones ADPhonebook是加拿大Infoopia公司的一款企业通讯录管理系统。 Infoopia Dovestones ADPhonebook 4.0.1.1之前版本存在安全漏洞,该漏洞源于/ADPhonebook?Department=HR端点的search参数存在反射型跨站脚本,可能导致在受害者浏览器中执行任意JavaScript。
CVSS Information
N/A
Vulnerability Type
N/A