Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in eXtplorer 2.1 RC3 and earlier allows remote attackers to hijack the authentication of administrators for requests that add an administrator account via an adduser admin action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
eXtplorer 跨站请求伪造漏洞
Vulnerability Description
eXtplorer是一套基于PHP的在线文件管理程序,它支持在线浏览文件和文件夹以及作为FTP客户端登录FTP服务器。 eXtplorer 2.1 RC3版本及早期版本中存在跨站请求伪造(CSRF)漏洞。远程攻击者可利用该漏洞通过添加用户管理操作劫持管理员添加管理员账户请求的身份验证。
CVSS Information
N/A
Vulnerability Type
N/A