Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
European Chemicals Agency IUCLID 6.x before 6.27.6 allows authentication bypass because a weak hard-coded secret is used for JWT signing. The affected versions are 5.15.0 through 6.27.5.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IUCLID 信任管理问题漏洞
Vulnerability Description
IUCLID是欧洲化学品管理局(European Chemicals Agency)组织的一个软件应用程序。用于捕获,存储,维护和交换有关化学物质的内在特性和危险特性的数据。 IUCLID 5.15.0至6.27.5版本存在安全漏洞,该漏洞源于JWT签名使用了弱硬编码秘密,允许身份验证绕过。
CVSS Information
N/A
Vulnerability Type
N/A