Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
admin/options.php in Grestul 1.2 does not properly restrict access, which allows remote attackers to bypass authentication and create administrative accounts via a manage_admin action in a direct request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Grestul "admin/options.php" 授权问题漏洞
Vulnerability Description
Grestul 1.2版本的admin/options.php没有适当地限制访问权,远程攻击者可以借助提交的一个直接的请求中的一个manage_admin操作,绕过权限并创建管理账户。
CVSS Information
N/A
Vulnerability Type
N/A