Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to gain access via modified user_env, pass_env, power_env, and id_env parameters in a cookie, which comprise a persistent logon that does not vary across sessions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Ultimate PHP Board cookie 多个输入验证漏洞
Vulnerability Description
Ultimate PHP Board (UPB) 1.9.6及之前版本可以使远程攻击者借助cookie中经过修改的user_env, pass_env, power_env, 和 id_env参数,形成会话之间不变的永久性登录,来获得访问权。
CVSS Information
N/A
Vulnerability Type
N/A