Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Multiple vulnerabilities on Meta4 HR from Cegid
Vulnerability Description
The configuration pages available are not intended to be placed on an Internet facing web server, as they expose file paths to the client, who can be an attacker. Instead of rewriting these pages to avoid this vulnerability, they will be dismissed from future releases of Cegid Meta4 HR, as they do not offer product functionality
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
重定向后执行(EAR)
Vulnerability Title
Meta4 HR 安全漏洞
Vulnerability Description
Cegid Meta4 HR是Cegid公司的一个人力资源管理软件(HRM)平台。 Meta4 HR 819.001.022及之前版本存在安全漏洞,该漏洞源于配置页面放置在了面向Internet的web服务器上,导致文件路径被暴露给了攻击者。
CVSS Information
N/A
Vulnerability Type
N/A