Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Input Validation vulnerability in Web Client emails that do not go through Secure Mail
Vulnerability Description
Missing input validation in certain features of the Web Client of Fortra's GoAnywhere prior to version 7.8.0 allows an attacker with permission to trigger emails to insert arbitrary HTML or JavaScript into an email.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
在Web页面生成时对输入的转义处理不恰当(跨站脚本)
Vulnerability Title
Fortra GoAnywhere 安全漏洞
Vulnerability Description
Fortra GoAnywhere是美国Fortra公司的一种安全的文件传输解决方案。 Fortra GoAnywhere 7.8.0之前版本存在安全漏洞,该漏洞源于Web Client中缺少输入验证,可能导致插入任意HTML或JavaScript。
CVSS Information
N/A
Vulnerability Type
N/A