MegaBook Multiple HTML Injection...

- AV AC AU C I A
发布: 2003-06-29
修订: 2025-04-13

MegaBook is prone to multiple HTML injection vulnerabilities. This is due to insufficient sanitization of HTML and script code from user-supplied input, including input supplied to the administrative login page and via the client HTTP User-Agent: header field. Exploitation of these issues could permit hostile HTML or script code to be injected into the guestbook system and rendered in the browser of a legitimate guestbook user.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息