漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
A number of unused delete routes are present in CloudForms before 5.7.2.1 which can be accessed via GET requests instead of just POST requests. This could allow an attacker to bypass the protect_from_forgery XSRF protection causing the routes to be used. This attack would require additional cross-site scripting or similar attacks in order to execute.
CVSS Information
N/A
Vulnerability Type
输入验证不恰当
Vulnerability Title
Red Hat CloudForms Management App 安全漏洞
Vulnerability Description
Red Hat CloudForms Management Engine(CFME)App是美国红帽(Red Hat)公司的一个IaaS(基础设施即服务)云服务解决方案的管理引擎应用程序。 Red Hat CFME App中存在安全绕过漏洞。攻击者可利用该漏洞实施中间人攻击,冒充可信的服务器。
CVSS Information
N/A
Vulnerability Type
N/A