Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The DropDocuments plugin in KnowledgeTree before 3.5.4a allows remote authenticated users to gain administrative privileges via a certain sequence of "browse documents" and dashboard requests.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KnowledgeTree DropDocuments plugin设计错误漏洞
Vulnerability Description
KnowledgeTree是美国KnowledgeTree公司的一套基于Web的开源文档管理系统。该系统提供知识管理、文档版本控制和分层文档管理等功能。它具有知识管理,文档版本控制,分层文档管理和支持一些流行的文件格式也可以自定文件类型等。 KnowledgeTree中的DropDocuments plugin存在设计错误漏洞。远程认证用户借助一个特定的"浏览文档"和dashboard请求的序列,获得管理特权。
CVSS Information
N/A
Vulnerability Type
N/A