Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in bmc/admin.php in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allows remote attackers to perform unauthorized actions as an administrator and delete arbitrary user accounts via a delete_user action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Kailash Nadh boastMachine 'admin.php '跨站请求伪造(CSRF)漏洞
Vulnerability Description
Kailash Nadh boastMachine (以前的 bMachine) 3.1及之前版本中的bmc/admin.php 存在跨站请求伪造(CSRF)漏洞。远程攻击者可以借助delete_user操作,以管理员身份进行未授权操作并删除任意用户的帐号。
CVSS Information
N/A
Vulnerability Type
N/A