Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
University of Central Florida Materia API Controller api.php before cross-site request forgery
Vulnerability Description
A vulnerability classified as problematic has been found in University of Central Florida Materia up to 9.0.0. This affects the function before of the file fuel/app/classes/controller/api.php of the component API Controller. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. Upgrading to version 9.0.1-alpha1 is able to address this issue. The name of the patch is af259115d2e8f17068e61902151ee8a9dbac397b. It is recommended to upgrade the affected component. The identifier VDB-215973 was assigned to this vulnerability.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
跨站请求伪造(CSRF)
Vulnerability Title
University of Central Florida Materia 跨站请求伪造漏洞
Vulnerability Description
Materia是University of Central Florida开源的一个让学生使用易于嵌入的在线课程应用程序。 University of Central Florida Materia 9.0.1-alpha1版本及之前版本存在跨站请求伪造漏洞。攻击者利用该漏洞执行跨站点请求伪造攻击。
CVSS Information
N/A
Vulnerability Type
N/A