Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Mavili Guestbook, as released in November 2007, allows remote attackers to edit, delete, and approve arbitrary messages via a direct request to (1) edit.asp, (2) delete.asp, or (3) approve.asp.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mavili Guestbook 权限许可和访问控制漏洞
Vulnerability Description
Mavili Guestbook是一款留言本应用程序。 发布于2007年11月,Mavili Guestbook中存在漏洞。远程攻击者可利用该漏洞通过直接请求(1)edit.asp(2)delete.asp或(3)approve.asp,编辑、删除、审批任意消息。
CVSS Information
N/A
Vulnerability Type
N/A