Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ATutor AContent before 1.2-1 allows remote attackers to modify arbitrary user passwords or category names via a direct request to (1) user/index_inline_editor_submit.php or (2) course_category/index_inline_editor_submit.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AContent 多个远程安全安全漏洞
Vulnerability Description
AContent是支持导入、导出、制作IMS内容软件包的电子学习内容创造工具和库。 ATutor Acontent 1.2-1之前版本中存在漏洞。远程攻击者可利用该漏洞通过直接请求到(1)user/index_inline_editor_submit.php或(2)course_category/index_inline_editor_submit.php脚本,修改任意用户密码或类别名称。
CVSS Information
N/A
Vulnerability Type
N/A