Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in home/secretqtn.php in SocketMail Pro 2.2.9 allows remote attackers to hijack the authentication of arbitrary users for requests that change user security questions and answers via an upd action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SocketMail Pro home/secretqtn.php 跨站请求伪造漏洞
Vulnerability Description
SocketMail Pro是一款Email解决方案。 SocketMail Pro 2.2.9版本中的home/secretqtn.php中存在跨站请求伪造(CSRF)漏洞。远程攻击者可利用该漏洞通过upd操作劫持任意用户改变用户安全问题和答案请求的身份验证。
CVSS Information
N/A
Vulnerability Type
N/A