Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Open Source Security Information Management (OSSIM) before 2.1.2 allows remote attackers to bypass authentication, and read graphs or infrastructure information, via a direct request to (1) graphs/alarms_events.php or (2) host/draw_tree.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Alienvault Open Source Security Information Management多个权限绕过漏洞
Vulnerability Description
开放源安全信息管理器(OSSIM)之前的版本2.1.2版本允许远程攻击者借助对(1)graphs/alarms_events.php或(2)host/draw_tree.php的一个直接请求,绕过权限并读取图像或基础信息。
CVSS Information
N/A
Vulnerability Type
N/A