Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site request forgery (CSRF) vulnerabilities in Subrion CMS before 2.2.3 allow remote attackers to hijack the authentication of administrators for requests that add, delete, or modify sensitive information, as demonstrated by adding an administrator account via an add action to admin/accounts/add/.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Subrion CMS 多个跨站请求伪造漏洞
Vulnerability Description
Subrion CMS是Subrion团队开发的一套基于PHP的内容管理系统(CMS)。该系统可被集成到网站,并支持多种扩展插件等。 Subrion CMS 2.2.3之前版本中存在多个跨站请求伪造(CSRF)漏洞。远程攻击者可利用这些漏洞通过admin/accounts/add/的添加操作,劫持身份验证的添加,删除,或修改敏感信息的请求。
CVSS Information
N/A
Vulnerability Type
N/A