Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
phpSquidPass before 0.2 uses an incomplete regular expression to find a matching username in its database, which allows remote authenticated attackers to effectively delete other usernames via a short username that matches the end of the targeted username.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHPSquidPass Index.PHP未授权用户删除漏洞
Vulnerability Description
phpSquidPass 0.2之前版本使用不完整正则表达式在其数据库中查找匹配的用户名。远程认证攻击者借助与目标文件名结尾匹配的超短用户名有效地删除其他用户名。
CVSS Information
N/A
Vulnerability Type
N/A