Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
admin/change.php in ProNews 1.5 does not check whether a user is permitted to change news items, which allows remote attackers to add or delete information within an item, and possibly have other impacts. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ProNews 'change.php' 任意添加删除漏洞
Vulnerability Description
ProNews 1.5中的admin/change.php未检查用户是否允许变更新闻项,远程攻击者可以添加或删除在新闻项内的信息,并可能有其他影响。
CVSS Information
N/A
Vulnerability Type
N/A