Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
enter.asp in Mini-Nuke 2.3 and earlier makes it easier for remote attackers to conduct password guessing attacks by setting the guvenlik parameter to the same value as the hidden gguvenlik parameter, which bypasses a verification step because the gguvenlik parameter is assumed to be immutable by the attacker.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mini-Nuke enter.asp 验证绕过漏洞
Vulnerability Description
Mini-Nuke 中的enter.asp远程攻击者更容易通过将guvenlik参数设置为和隐藏的gguvenlik参数一样的值(由于系统假定攻击者不可改变gguvenlik参数,绕过了验证步骤)来执行密码猜测攻击。
CVSS Information
N/A
Vulnerability Type
N/A