Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
iScripts UberforX 2.2 has CSRF in the "manage_settings" section of the Admin Panel via the /cms?section=manage_settings&action=edit URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IScripts UberforX Admin Panel 跨站请求伪造漏洞
Vulnerability Description
IScripts UberforX是美国Iscripts公司的一套开源电子商务解决方案。该方案具有库存管理、支付网关支持和地洞应用程序支持等功能。Admin Panel是其中的一个管理面板。 IScripts UberforX 2.2版本中的Admin Panel的‘manage_settings’部分存在跨站请求伪造漏洞。远程攻击者可借助/cms?section=manage_settings&action=edit URI利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A