Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on an HTTP session for entering credentials on login pages, which allows remote attackers to obtain sensitive information by sniffing the network.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PaperThin CommonSpot 信息泄露漏洞
Vulnerability Description
PaperThin CommonSpot是美国PaperThin公司的一套专用于Web内容管理、Web体验管理和品牌管理等的数字营销网站内容管理系统。该系统支持即时发布内容、简化内容管理和搜索引擎优化等。 PaperThin CommonSpot 7.0.1及之前的版本和8.0.0至8.0.2版本中存在安全漏洞,该漏洞源于登录页面的输入凭证依赖HTTP会话。远程攻击者可通过嗅探网络利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A