Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
admin.php in Digi-news 1.1 allows remote attackers to bypass authentication via a cookie with the username set to the name of the administrator, which satisfies an improper condition in admin.php that does not require a correct password.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Digi-news认证绕过漏洞
Vulnerability Description
Digi-news 1.1版本的admin.php存在漏洞。远程攻击者可以借助带有被设为管理员名称的用户名的cookie绕过认证,该漏洞满足无需正确密码admin.php中的不适当条件。
CVSS Information
N/A
Vulnerability Type
N/A