Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site request forgery (CSRF) vulnerability in WSO2 Carbon 4.4.5 allows remote attackers to hijack the authentication of privileged users for requests that shutdown a server via a shutdown action to server-admin/proxy_ajaxprocessor.jsp.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WSO2 Carbon 跨站请求伪造漏洞
Vulnerability Description
WSO2 Carbon是美国WSO2公司的一套用于开发WSO2中间件产品的核心平台。 WSO2 Carbon 4.4.5版本中存在跨站请求伪造漏洞。远程攻击者通过向server-admin/proxy_ajaxprocessor.jsp文件执行关闭操作利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A