漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
morontt zend-blog-number-2 Comment Comment.php cross-site request forgery
Vulnerability Description
A vulnerability was found in morontt zend-blog-number-2. It has been classified as problematic. Affected is an unknown function of the file application/forms/Comment.php of the component Comment Handler. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The name of the patch is 36b2d4abe20a6245e4f8df7a4b14e130b24d429d. It is recommended to apply a patch to fix this issue. VDB-215250 is the identifier assigned to this vulnerability.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
授权机制不正确
Vulnerability Title
Zend-blog-2 跨站请求伪造漏洞
Vulnerability Description
Zend-blog-2是Alexander Harchenko个人开发者的一个框架博客。 Zend-blog-2 存在安全漏洞。攻击者利用该漏洞执行跨站请求伪造攻击。
CVSS Information
N/A
Vulnerability Type
N/A