Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Blue-Collar Productions i-Gallery 3.4 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing a base64-encoded password via a direct request for igallery.mdb.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Blue-Collar Blue-Collar Productions I-Gallery web根目录 权限许可和访问控制漏洞
Vulnerability Description
Blue-Collar Productions i-Gallery 3.4版本在web根目录储存敏感信息但没有赋予足够的访问控制,远程攻击者可以借助对bigallery.mdb提交一个直接请求,下载一个包含base64编码的密码的文件。
CVSS Information
N/A
Vulnerability Type
N/A