漏洞标题
N/A
漏洞描述信息
在ASPScriptz Guest Book 2.0及其更早版本中,多个跨站脚本攻击(XSS)漏洞允许远程攻击者通过(1) GBOOK_UNAME,(2) GBOOK_EMAIL,(3) GBOOK_ CITY,(4) GBOOK_COU,(5) GBOOK_WWW和(6) GBOOK_MESS表单字段插入任意的web脚本或HTML。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
漏洞类别
N/A
漏洞标题
N/A
漏洞描述信息
Multiple cross-site scripting (XSS) vulnerabilities submit.asp in ASPScriptz Guest Book 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) GBOOK_UNAME, (2) GBOOK_EMAIL, (3) GBOOK_CITY, (4) GBOOK_COU, (5) GBOOK_WWW, and (6) GBOOK_MESS form fields.
CVSS信息
N/A
漏洞类别
N/A
漏洞标题
ASPScriptz Guest Book submit.asp 多个跨站脚本攻击(XSS)漏洞
漏洞描述信息
ASPScriptz Guest Book 2.0及更早版本中的submit.asp存在多个跨站脚本攻击(XSS)漏洞,远程攻击者可通过(1)GBOOK_UNAME,(2)GBOOK_EMAIL,(3)GBOOK_CITY,(4)GBOOK_COU,(5)GBOOK_WWW和(6)GBOOK_MESS表单字段来注入任意webJ脚本或HTML。
CVSS信息
N/A
漏洞类别
跨站脚本