Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
UI/Manage.pm in Foswiki 1.1.0 and 1.1.1 allows remote authenticated users to gain privileges by modifying the GROUP and ALLOWTOPICCHANGE preferences in the topic preferences for Main.AdminGroup.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Foswiki UI/Manage.pm 权限许可和访问控制漏洞
Vulnerability Description
Foswiki 是一个用Perl 语言开发的Wiki 软件。 Foswiki 1.1.0和1.1.1版本中的UI/Manage.pm文件中存在权限许可和访问控制漏洞。远程认证用户可以通过对Main.AdminGroup标题参数选择中的GROUP和ALLOWTOPICCHANGE的标题参数选择进行修改,从而获得权限提升。
CVSS Information
N/A
Vulnerability Type
N/A