Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CandidATS version 3.0.0 allows an external attacker to elevate privileges in the application. This is possible because the application suffers from CSRF. This allows to persuade an administrator to create a new account with administrative permissions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CandidATS 跨站请求伪造漏洞
Vulnerability Description
CandidATS是印度CandidATS公司的一个免费和开源的招聘人员跟踪系统。 CandidATS 3.0.0版本存在安全漏洞。攻击者利用该漏洞可以提升权限。
CVSS Information
N/A
Vulnerability Type
N/A