Thruk 漏洞列表
共找到 3 个与 Thruk 相关的漏洞
📅 加载漏洞趋势中...
-
CVE-2021-35488: Thruk 2.40-2 - Cross-Site Scripting POC
Thruk 2.40-2 contains a cross-site scripting vulnerability via /thruk/#cgi-bin/status.cgi?style=combined&title={TITLE] in the host or title parameter. An attacker can inject arbitrary JavaScript into status.cgi, leading to a triggered payload when accessed by an authenticated user. -
CVE-2021-35488: Thruk 2.40-2 - Cross-Site Scripting POC
Thruk 2.40-2 contains a cross-site scripting vulnerability via /thruk/#cgi-bin/status.cgi?style=combined&title={TITLE] in the host or title parameter. An attacker can inject arbitrary JavaScript into status.cgi, leading to a triggered payload when accessed by an authenticated user. -
thruk-xss: Thruk Monitoring Webinterface - Cross-Site Scripting POC
Thruk Monitoring Webinterface contains a cross-site scripting vulnerability via the login parameter at /thruk/cgi-bin/login.cgi.