Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The "IP address range limitation" function in OpenPNE 1.6 through 1.8, 2.0 through 2.8, 2.10 through 2.14, and 3.0 through 3.4, when mobile device support is enabled, allows remote attackers to bypass the "simple login" functionality via unknown vectors related to spoofing.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tejimaya OpenPNE 'IP address range limitation'授权绕过安全漏洞
Vulnerability Description
OpenPNE中文是株式会社手?屋和OpenPNE中文团队共同主持开发的开源sns引擎。 OpenPNE的"IP address range limitation"功能存在授权绕过安全漏洞。当移动设备支持功能启用时,远程攻击者可以借助和欺骗功能相关的未明漏洞,绕过“单点登录”功能。
CVSS Information
N/A
Vulnerability Type
N/A