Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does not properly restrict access to administrator functions, which allows remote attackers to change the administrator password via a direct request to modules/simpleforum/admin/index.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LoveCMS Simple Forum模块非授权修改管理员密码漏洞
Vulnerability Description
LoveCMS一个由PHP写成的简单内容管理系统,采用MYSQL作为其数据库。 LoveCMS 1.6.2 Final的Simple Forum 3.1d模块没有合理限制对管理员功能的访问,这会允许远程攻击者通过对modules/simpleforum/admin/index.php提交一个直接请求,修改管理员密码。
CVSS Information
N/A
Vulnerability Type
N/A