Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in creditease-sec insight through 2018-09-11. user_delete in srcpm/app/admin/views.py allows CSRF.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
creditease-sec insight 跨站请求伪造漏洞
Vulnerability Description
creditease-sec insight是一套漏洞全生命周期管理平台。该平台包括应用系统资产管理、漏洞全生命周期管理和安全知识库管理等。 creditease-sec insight 2018-09-11及之前版本中的srcpm/app/admin/views.py文件的user_delete存在跨站请求伪造漏洞。远程攻击者可利用该漏洞执行未授权的操作。
CVSS Information
N/A
Vulnerability Type
N/A