Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18, allow unauthorized remote attackers to reset the authentication via the "/xml/system/setAttribute.xml" URL, using the GET request "?id=0&attr=protectAccess&newValue=0" (a successful attack will allow attackers to login without authorization).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MusicCenter/Trivum Multiroom Setup Tool 跨站请求伪造漏洞
Vulnerability Description
MusicCenter/Trivum Multiroom Setup Tool是一款用于安装设置流媒体源(音乐播放器)的工具。 MusicCenter/Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional 9.34 build 13381 - 12.07.18之前版本中的‘/xml/system/setAttribute.xml’URL存在跨站请求伪造漏洞。远程攻击者可通过发送‘?id=0&attr=protectAccess&
CVSS Information
N/A
Vulnerability Type
N/A