Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Piwik before 1.11 accepts input from a POST request instead of a GET request in unspecified circumstances, which might allow attackers to obtain sensitive information by leveraging the logging of parameters.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Piwik 敏感信息漏洞
Vulnerability Description
Piwik(前称phpMyVisites)是一套基于PHP5和MySQL的开源网站访问统计系统。 Piwik 1.11之前版本中存在漏洞,该漏洞源于在未指定的情况下程序接受来自POST请求而不是GET请求的输入。通过利用参数的记录,攻击者利用该漏洞获得敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A