Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site request forgery (CSRF) vulnerabilities in editAccount.html in the JAMF Software Server (JSS) interface in JAMF Casper Suite before 8.61 allow remote attackers to hijack the authentication of administrators for requests that (1) create user accounts or (2) change passwords via a Save action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
JAMF Casper Suite JSS 跨站请求伪造漏洞
Vulnerability Description
Casper Suite是一款为为Mac OS X和iOS客户端管理的可扩展性框架。 JAMF Casper Suite 8.61之前版本中的JAMF Software Server (JSS)接口中的editAccount.html中存在多个跨站请求伪造漏洞。远程攻击者可利用这些漏洞通过Save操作,劫持管理员身份验证(1)创建用户账户或(2)更改密码的请求。
CVSS Information
N/A
Vulnerability Type
N/A