Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Zoho ManageEngine Password Manager Pro 10.4 and prior has no protection against Cross-site Request Forgery (CSRF) attacks, as demonstrated by changing a user's role.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ZOHO ManageEngine Password Manager Pro 跨站请求伪造漏洞
Vulnerability Description
ZOHO ManageEngine Password Manager Pro是美国卓豪(ZOHO)公司的一款密码管理器。 Zoho ManageEngine Password Manager Pro 10.4及之前版本中存在跨站请求伪造漏洞,该漏洞源于程序没有对跨站请求伪造攻击进行防护。攻击者可利用该漏洞执行操作。
CVSS Information
N/A
Vulnerability Type
N/A