Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in add_user.php in Employee Timeclock Software 0.99 allows remote attackers to hijack the authentication of an administrator for requests that create new administrative users. NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Timeclock Software多个跨站请求伪造漏洞
Vulnerability Description
Employee Timeclock Software 存在多个跨站请求伪造漏洞。远程攻击者可以借助创建一个新的管理员用户的请求,挟持管理员认证。
CVSS Information
N/A
Vulnerability Type
N/A