Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Subscribe Me LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain privileges for the Account Manager by directly calling the subscribe.pl script with the setpwd parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CGI脚本中心Subscribe Me LITE管理密码变更漏洞
Vulnerability Description
Subscribe Me LITE不再正授权证改变管理员密码行为。远程攻击者可以通过直接调用带有setpwd参数的subscribe.pl脚本提升帐户管理员特权。
CVSS Information
N/A
Vulnerability Type
N/A