Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SITOS six Build v6.2.1 allows a user to change their password and recovery email address without requiring them to confirm the change with their old password. This would allow an attacker with access to the victim's account (e.g., via XSS or an unattended workstation) to change that password and address.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SITOS six Build 授权问题漏洞
Vulnerability Description
SITOS是一套模块化的电子学习系统。该系统包括音频播放、视频播放、论坛、博客和社交媒体等功能。 SITOS six Build v6.2.1版本中存在授权问题漏洞。攻击者可利用该漏洞更改受影响用户账户密码和电子邮件地址。
CVSS Information
N/A
Vulnerability Type
N/A