Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ObjectPlanet Opinio before 7.14 allows Expression Language Injection via the admin/permissionList.do from parameter. This can be used to retrieve possibly sensitive serverInfo data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ObjectPlanet Opinio 安全漏洞
Vulnerability Description
ObjectPlanet Opinio是挪威ObjectPlanet公司的一个在线调查系统。 ObjectPlanet Opinio 7.14之前版本存在安全漏洞,该漏洞源于程序允许通过管理权限列表注入表达式语言,这可以用于检索可能敏感的serverInfo数据。
CVSS Information
N/A
Vulnerability Type
N/A