Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Macromedia JRun 3.0 and 3.1 allows remote attackers to obtain duplicate active user session IDs and perform actions as other users via a URL request for the web application directory without the trailing '/' (slash), as demonstrated using ctx.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Allaire Jrun复制会话ID漏洞
Vulnerability Description
Macromedia JRun 3.0版本和3.1版本存在漏洞。远程攻击者可以借助无拖尾'/'(斜杠)的web应用目录的URL请求作为其他用户来获得复制的当前用户会话IDs以及执行行为,正如使用ctx。
CVSS Information
N/A
Vulnerability Type
N/A