Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in Serendipity 0.8.4 and earlier allows remote attackers to perform unauthorized actions as a logged in user via a link or IMG tag to serendipity_admin.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Serendipity 跨站请求伪造漏洞
Vulnerability Description
Serendipity是一款针对博客用户设计的CMS系统。 Serendipity 0.8.4及之前版本存在跨站请求伪造(CSRF)漏洞。远程攻击者可以借助对serendipity_admin.php的链接或IMG标签,以已登录用户身份执行未经授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A