Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PunBB 1.2.9, used alone or with F-ART BLOG:CMS, may trust a client's IP address as specified in the X-Forwarded-For HTTP header rather than the TCP/IP stack, which allows remote attackers to misrepresent their IP address by sending a modified header.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PunBB/BLOG:CMS来源欺骗漏洞
Vulnerability Description
PunBB 1.2.9,在单独使用或者和F-ART BLOG:CMS一起使用时,可能会信任在 X-Forwarded-For HTTP标题内而非TCP/IP堆栈内指定的客户端IP地址,远程攻击者可通过发送修改的标题来误报其IP地址。
CVSS Information
N/A
Vulnerability Type
N/A