October CMS是一套基于PHP和Laravel Web应用程序框架的开源内容管理系统(CMS)。 October CMS 存在安全漏洞,攻击者可利用该漏洞通过精心编制的请求绕过服务器上的身份验证和用户帐户接管。攻击者必须获得用于cookie加密和签名的Laravel密钥才能利用此漏洞进行攻击。该问题已在Build 472和v1.1.5中修复
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| octobercms | october | >= 1.0.471, < 1.0.472 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet