Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Zomplog 3.8.2 and earlier allows remote attackers to gain administrative access by creating an admin account via a direct request to install/newuser.php with the admin parameter set to 1.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Zomplog 'install/newuser.php' 未授权访问漏洞
Vulnerability Description
Zomplog 3.8.2以及之前的版本远程攻击者可以借助对install/newuser.php的一个直接请求创建一个管理员帐户,从而获得管理员访问权限。install/newuser.php中的admin参数设置为1。
CVSS Information
N/A
Vulnerability Type
N/A