Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In mblog <= 3.5.0 there is a CSRF vulnerability in the background article management. The attacker constructs a CSRF load. Once the administrator clicks a malicious link, the article will be deleted.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
langhsu mblog 跨站请求伪造漏洞
Vulnerability Description
langhsu mblog是langhsu开源的一个应用系统。开源Java博客系统, 支持多用户, 支持切换主题。 langhsu mblog 3.5.0及其之前版本存在跨站请求伪造漏洞,该漏洞源于后台文章管理中缺少对于跨站请求伪造的验证。攻击者可利用该漏洞构造一个CSRF负载。一旦管理员点击一个恶意链接,一个文章将被添加。
CVSS Information
N/A
Vulnerability Type
N/A