漏洞标题
N/A
漏洞描述信息
在Mat Wright的Guestbook 2.3.1中,跨站脚本(XSS)漏洞允许远程攻击者通过(1)url,(2)城市,(3)州或(4)国家参数执行任意的网页脚本或HTML。注意:此信息的来源未知;详细信息仅从第三方信息获得,尽管它很可能是在披露后分析的结果。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
漏洞类别
N/A
漏洞标题
N/A
漏洞描述信息
Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) url, (2) city, (3) state, or (4) country parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information, although it is likely that they are the result of post-disclosure analysis.
CVSS信息
N/A
漏洞类别
N/A
漏洞标题
Matt Wright Guestbook 跨站脚本攻击漏洞
漏洞描述信息
Matt Wright Guestbook 2.3.1中存在跨站脚本攻击(XSS)漏洞。这使得远程攻击者可以借助于参数 (1) url、(2) city、(3) state或(4) country执行任意Web脚本或HTML。
CVSS信息
N/A
漏洞类别
跨站脚本