Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PAD Site Scripts 3.6 allows remote attackers to bypass authentication and gain privileges as other users, including administrative privileges, by setting the authuser cookie parameter to a valid username.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Phpeasycode PAD Site Scripts authuser cookie输入验证漏洞
Vulnerability Description
PAD Site Scripts是一个商业的PHP脚本,用于维护用于Windows软件下载网站。 PAD Site Scripts 3.6版本允许远程攻击者通过设置authuser cookie参数到一个有效的用户名,绕过认证权限并获得像其他用户一样的特权。
CVSS Information
N/A
Vulnerability Type
N/A