Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in iPortalis iCS 7.1.13.0. An attacker can gain privileges by intercepting a request and changing UserRoleKey=COMPANY_ADMIN to UserRoleKey=DOMAIN_ADMIN (to achieve Domain Administrator access).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
iPortalis 输入验证错误漏洞
Vulnerability Description
iPortalis是提供管理Microsoft 许可证、成本、治理和报告功能。 iPortalis iCS 中存在输入验证错误漏洞,该漏洞源于未对UserRoleKey=请求添加有效的权限认证。攻击者可通过将UserRoleKey=COMPANY ADMIN更改为UserRoleKey=DOMAIN获得域管理权限。 以下产品及版本受到影响:iPortalis iCS 7.1.13.0 版本。
CVSS Information
N/A
Vulnerability Type
N/A