Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
backup.php in HandsomeWeb SOS Webpages before 1.1.12 does not require knowledge of the cleartext password, which allows remote attackers to bypass authentication by leveraging knowledge of the administrator password hash.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
HandsomeWeb SOS Webpages 安全漏洞
Vulnerability Description
HandsomeWeb SOS Webpages是美国HandsomeWeb公司的一套开源的网站管理系统。该系统支持快速修改文字、图片和菜单等内容。 HandsomeWeb SOS Webpages 1.1.12之前版本中的backup.php脚本存在安全漏洞。攻击者可借助管理员散列密码利用该漏洞绕过身份验证。
CVSS Information
N/A
Vulnerability Type
N/A