Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site request forgery (CSRF) vulnerabilities in Argyle Social 2011-04-26 allow remote attackers to hijack the authentication of administrators for requests that (1) modify credentials via the role parameter to users/create/, (2) modify rules via the terms field in stream_filter_rule JSON data to settings-ajax/stream_filter_rules/create, or (3) modify efforts via the title field in effort JSON data to publish-ajax/efforts/create.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Viralheat Argyle Social 跨站请求伪造漏洞
Vulnerability Description
Viralheat Argyle Social是美国Viralheat公司的一套企业社交媒体平台。 Viralheat Argyle Social 2011-04-26版本中存在跨站请求伪造漏洞,该漏洞源于users/create/脚本没有充分过滤‘role’参数;settings-ajax/stream_filter_rules/create脚本没有充分过滤‘stream_filter_rule JSON’数据中的‘terms’字段;publish-ajax/efforts/create脚本没有充分过滤
CVSS Information
N/A
Vulnerability Type
N/A