Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
controller/org.controller/org.controller.js in the CVE Services API 1.1.1 before 5c50baf3bda28133a3bc90b854765a64fb538304 allows an organizational administrator to transfer a user account to an arbitrary new organization, and thereby achieve unintended access within the context of that new organization.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cve-Api 安全漏洞
Vulnerability Description
Cve-Api是Cve Program开源的一个此包含 Cve 服务 Api 的源的存储库。 Cve-Api 存在安全漏洞,该漏洞源于控制器org,在5c50baf3bda28133a3bc90b854765a64fb538304之前的Cve-Api 1.1.1中的controller org.controller.js允许组织管理员将用户帐户转移到任意的新组织,从而在新组织的上下文中实现非预期的访问。
CVSS Information
N/A
Vulnerability Type
N/A