Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SAS Drug Development (SDD) before 32DRG02 mishandles logout actions, which allows a user (who was previously logged in) to access resources by pressing a back or forward button in a web browser.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SAS Drug Development 输入验证错误漏洞
Vulnerability Description
SAS Drug Development(SDD)是一套SAS(统计分析系统)系统。该系统主要用于管理、分析、报告和审查临床研究数据。 SDD 32DRG02之前版本中存在安全漏洞,该漏洞源于程序没有正确处理注销操作。攻击者可借助浏览器的返回或前进键利用该漏洞访问资源。
CVSS Information
N/A
Vulnerability Type
N/A