Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
index.php in Tritanium Bulletin Board 1.2.3 allows remote attackers to read and reply to arbitrary messages by modifying the thread_id, forum_id, and sid parameters.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tritanium Scripts Tritanium Bulletin Board未授权访问漏洞
Vulnerability Description
Tritanium Bulletin Board是一款基于WEB的论坛程序。 Tritanium Bulletin Board对用户提交的请求缺少充分过滤,远程攻击者可以利用这个漏洞本来没有权限访问的帖子内容。 攻击者可以通过修改URL,提供_id, forum_id,和sid参数,可回答主题及查看主题内容,攻击者可以通过修改thread_id来访问所有受保护的主题内容。
CVSS Information
N/A
Vulnerability Type
N/A