ViewCVS Viewcvs.py Cross-Site...

- AV AC AU C I A
发布: 2003-12-24
修订: 2025-04-13

ViewCVS is prone to a cross-site scripting vulnerability. A remote attacker could take advantage of this issue by constructing a malicious link to a site running the vulnerable software that include embedded hostile HTML and script code. If this link is visited by a victim user, the attacker-supplied code may be rendered in their browser in the context of the site. This could permit theft of cookie-based authentication credentials or other attacks.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息