Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The default configuration of Recruitment Software installs admin/site.xml under the web document root with insufficient access control, which might allow remote attackers to obtain sensitive information (MySQL database credentials) via a direct request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Recruitment Software 访问控制漏洞
Vulnerability Description
Recruitment Software的默认配置将admin/site.xml安装在web文档根目录下,并且未采取足够的访问控制,远程攻击者因此可能可以通过直接请求来获取敏感信息(MySQL 数据库凭证)。
CVSS Information
N/A
Vulnerability Type
N/A