Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Butterfly Organizer 2.0.0 allows remote attackers to (1) delete arbitrary categories via a modified tablehere parameter to category-delete.php with the is_js_confirmed parameter set to 1, or (2) delete arbitrary accounts via the mytable parameter to delete.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Butterflymedia Butterfly Organizer多个任意数据删除漏洞
Vulnerability Description
Butterfly Organizer 2.0.0版本允许远程攻击者(1)借助一个畸形的提交到category-delete.php的tablehere参数和将is_js_confirmed参数设置成1,来删除任意类别;或(2)借助提交到delete.php的mytable参数,删除任意帐户。
CVSS Information
N/A
Vulnerability Type
N/A