Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Improper authorisation in Uptime DC
Vulnerability Description
Improper authorisation of regular users in ProIntegra Uptime DC software (versions below 2.0.0.33940) allows them to change passwords of all other users including administrators leading to a privilege escalation.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
授权机制不正确
Vulnerability Title
ProIntegra Uptime DC 安全漏洞
Vulnerability Description
ProIntegra Uptime DC是ProIntegra公司的一个仪表盘。 ProIntegra Uptime DC 2.0.0.33940之前版本存在安全漏洞,该漏洞源于存在权限配置不当问题,导致普通用户可以提升权限。
CVSS Information
N/A
Vulnerability Type
N/A