Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site request forgery (CSRF) vulnerabilities in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allow remote attackers to perform unauthorized actions as a logged-in user, as demonstrated by tricking the administrator to access a web page that performs a mod_info action in modify_gallery.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Yet Another PHP Image Gallery (YaPIG) 多个跨站请求伪造漏洞
Vulnerability Description
Yet Another PHP Image Gallery (YaPIG) 0.95b及更早版本存在多个跨站请求伪造漏洞,远程攻击者可以作为一个登录用户来执行未授权操作,如通过欺骗管理员访问一个在modify_gallery.php内执行mod_info操作的web页面 。
CVSS Information
N/A
Vulnerability Type
N/A