Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A Cross-Site Request Forgery (CSRF) in the component /public/admin/profile/update.html of YznCMS v1.1.0 allows attackers to arbitrarily change the Administrator password via a crafted POST request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
YznCMS 跨站请求伪造漏洞
Vulnerability Description
YznCMS是御宅男工作室的一个后台开发框架。 YznCMS v1.1.0版本存在安全漏洞,该漏洞源于在/public/admin/profile/update.html中存在跨站请求伪造(CSRF)漏洞,允许攻击者通过构建POST请求更改管理员密码。
CVSS Information
N/A
Vulnerability Type
N/A