漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
All-Dynamics Digital Signage System 2.0.2 Cross-Site Request Forgery via User Management
Vulnerability Description
All-Dynamics Digital Signage System 2.0.2 contains a cross-site request forgery vulnerability that allows attackers to create administrative users without proper request validation. Attackers can craft a malicious web page that automatically submits forms to create a new user with global administrative privileges when a logged-in user visits the page.
CVSS Information
N/A
Vulnerability Type
跨站请求伪造(CSRF)
Vulnerability Title
All-Dynamics Digital Signage System 跨站请求伪造漏洞
Vulnerability Description
All-Dynamics Digital Signage System是德国All-Dynamics公司的一个全动态数字标牌系统。 All-Dynamics Digital Signage System 2.0.2版本存在跨站请求伪造漏洞,该漏洞源于缺少请求验证,可能导致跨站请求伪造攻击。
CVSS Information
N/A
Vulnerability Type
N/A