Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An information disclosure vulnerability in UniverSIS-Students before v1.5.0 allows attackers to obtain sensitive information via a crafted GET request to the endpoint /api/students/me/courses/.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
UniverSIS-students 信息泄露漏洞
Vulnerability Description
UniverSIS-students是UniverSIS的所有学生交互的界面。 UniverSIS-students 1.5.0之前版本存在信息泄露漏洞,该漏洞源于/api/students/me/courses/缺少敏感信息保护。攻击者利用该漏洞可以发送特殊GET请求获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A