Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Phorum allows remote attackers to hijack sessions of other users by stealing and replaying the session hash in the phorum_uriauth parameter, as demonstrated using profile.php. NOTE: the affected version was reported to be 4.3.7, but this may be erroneous.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Phorum漏洞
Vulnerability Description
Phorum存在漏洞。远程攻击者通过偷窃和重放phorum_uriauth参数的会话散列劫持其他用户的会话,正如使用profile.php。
CVSS Information
N/A
Vulnerability Type
N/A