Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisadmin parameter to 1.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SlimCMS 'redirect.php'权限认证漏洞
Vulnerability Description
SlimCMS 是一款基于PHP/mysql的内容管理系统。 SlimCMS 1.0.0版本的redirect.php没有要求权限认证,这会允许远程攻击者通过使用新用户名和新密码参数并设置newisadmin参数为1,来创建管理用户。
CVSS Information
N/A
Vulnerability Type
N/A