Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Gleez CMS v1.2.0. Because of an Insecure Direct Object Reference vulnerability, it is possible for attackers (logged in users) to view profile page of other users, as demonstrated by navigating to user/3 on demo.gleezcms.org.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gleez CMS 信息泄露漏洞
Vulnerability Description
Gleez CMS是一套基于Kohana框架的可扩展的开源内容管理系统(CMS)。 Gleez CMS 1.2.0版本中存在安全漏洞。攻击者可利用该漏洞查看其它用户的个人资料页面(用户名、头像、最近一次访问的时间、加入的时间和访问的次数)。
CVSS Information
N/A
Vulnerability Type
N/A