Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
REDCap before 7.5.1 has CSRF in the deletion feature of the File Repository and File Upload components.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
REDCap File Repository和File Upload组件跨站请求伪造漏洞
Vulnerability Description
REDCap是美国范德堡大学(Vanderbilt University)的一个多机构联合发起的一款免费的、安全的、基于Web的应用程序。该系统的设计是用来支持数据挖掘的研究。File Repository和File Upload都是其中的组件。File Repository是一个文件存储组件;File Upload是一个文件上传组件。 REDCap 7.5.1之前的版本中的File Repository和File Upload组件中的删除功能存在跨站请求伪造漏洞。远程攻击者可利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A