Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in Invision Gallery before 1.3.1 allows remote attackers to delete albums and images as another user via a link or IMG tag to the (1) albums or (2) delimg actions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Invision Gallery 跨站请求伪造漏洞
Vulnerability Description
Invision Gallery 1.3.1之前的版本中存在跨站请求伪造(CSRF)漏洞,远程攻击者通过(1)相册或(2)delimg操作的连接或IMG图片标签,以另一用户的身份删除相册或图片。
CVSS Information
N/A
Vulnerability Type
N/A