Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Gallarific Free Edition 1.1 does not require authentication for (1) photos.php, (2) comments.php, and (3) gallery.php in gadmin/, which allows remote attackers to edit objects via a direct request, different vectors than CVE-2008-1327. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gallarific 'gadmin/' 授权问题漏洞
Vulnerability Description
Gallarific 1.1免费版并不要求对gadmin/中的(1)photos.php,(2)comments.php,和(3)gallery.php进行认证,远程攻击者可以借助一个直接请求,编辑对象。
CVSS Information
N/A
Vulnerability Type
N/A