Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
EQdkp 1.3.1 and earlier authenticates administrative requests by verifying that the HTTP Referer header specifies an admin/ URL, which allows remote attackers to read or modify account names and passwords via a spoofed Referer.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EQDKP Backup.PHP 权限绕过漏洞
Vulnerability Description
EQdkp 1.3.1版本及其早期版本通过验证HTTP Referer页眉列出的一个admin/ URL来鉴别管理请求,这会允许远程攻击者可以借助一个被欺骗的Referer,读取或修改帐户名和密码。
CVSS Information
N/A
Vulnerability Type
N/A