Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
_RealmAdmin/login.asp in Realm CMS 2.3 and earlier allows remote attackers to bypass authentication and access admin pages via certain modified cookies, probably including (1) cUserRole, (2) cUserName, and (3) cUserID.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Realm CMS 多个输入验证漏洞
Vulnerability Description
Realm CMS 2.3以及之前的版本中的_RealmAdmin/login.asp远程攻击者可以借助特定的修改过的cookies,可能包括(1)cUserRole,(2)cUserName和(3)cUserID,绕过身份认证和访问admin页。
CVSS Information
N/A
Vulnerability Type
N/A