WebLog Expert Logfile HTML Injection...

- AV AC AU C I A
发布: 2003-03-04
修订: 2025-04-13

WebLog Expert does not sufficiently sanitize HTML when logging requests. If malicious data containing HTML and script code is logged and then viewed using the software, exploitation will occur. Through exploitation of this issue, it will be possible to falsify log information and execute arbitrary script code in the web client of the user viewing the logs.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息