Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Check Point SofaWare Safe@Office, with firmware before Embedded NGX 7.0.45 GA, does not require entry of the old password when changing the admin password, which might allow attackers to gain privileges by conducting a CSRF attack, making a password change on an unattended workstation, or other vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Check Point SofaWare Safe@Office跨站请求伪造攻击漏洞
Vulnerability Description
Check Point SofaWare Safe@Office中存在跨站请求伪造攻击漏洞。当更改网管密码时,攻击者可以通过执行一个跨站请求伪造攻击,在无人管理的工作站上更改密码或者其他向量,获得特权。
CVSS Information
N/A
Vulnerability Type
N/A