
rayfalling/xiuno-docker
Releases0
Stars39
基于修罗/xiunoBBS的docker方案
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 5.3 MEDIUM | 5 MEDIUM | ||
An issue in the component route\user.php of Xiuno BBS v4.0.4 allows attackers to enumerate usernames. | |||
| 6.1 MEDIUM | 4.3 MEDIUM | ||
A cross-site scripting (XSS) vulnerability in the component install\install.sql of Xiuno BBS 4.0.4 allows attackers to execute arbitrary web scripts or HTML via changing the doctype value to 0. | |||
| 6.1 MEDIUM | 4.3 MEDIUM | ||
A cross-site scripting (XSS) vulnerability in the component /admin/?setting-base.htm of Xiuno BBS 4.0.4 allows attackers to execute arbitrary web scripts or HTML via the sitename parameter. | |||
| 6.1 MEDIUM | 4.3 MEDIUM | ||
A cross-site scripting (XSS) vulnerability in the component /admin/?setting-base.htm of Xiuno BBS 4.0.4 allows attackers to execute arbitrary web scripts or HTML via the sitebrief parameter. | |||