Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Fivestar module 6.x-1.x before 6.x-1.20 for Drupal does not properly validate voting data, which allows remote attackers to manipulate voting averages via a negative value in the vote parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drupal ‘Fivestar’ 模块安全限制绕过漏洞
Vulnerability Description
Drupal是Drupal社区所维护的一套用PHP语言开发的免费、开源的内容管理系统。 Drupal的Fivestar模块6.x-1.20之前版本中存在安全限制绕过漏洞,该漏洞源于此模块未正确过滤选票。攻击者可利用该漏洞修改投票均值。
CVSS Information
N/A
Vulnerability Type
N/A