Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The "Extended properties for entries" (entryproperties) plugin in serendipity_event_entryproperties.php in Serendipity 1.1.3 allows remote authenticated users to bypass password protection and "deliver custom entryproperties settings to the Serendipity Frontend" via a certain request that modifies the password being checked.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Serendipity serendipity_event_entryproperties.php密码绕过漏洞
Vulnerability Description
Serendipity 1.1.3版本的serendipity_event_entryproperties.php的对"entries(entryproperties)插件的延长属性"允许远程验证用户可以借助一个特制的请求来更改被检测的密码,以绕过密码保护并"向Serendipity Frontend传送客户编码设置信息"。
CVSS Information
N/A
Vulnerability Type
N/A