漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Account Take Over Vulnerability
Vulnerability Description
This vulnerability exists due to improper access controls on APIs in the Authentication module of Symphony XTS Web Trading and Mobile Trading platforms (version 2.0.0.1_P160). An authenticated remote attacker could exploit this vulnerability by manipulating parameters through HTTP request which could lead to unauthorized account take over belonging to other users.
CVSS Information
N/A
Vulnerability Type
授权机制不正确
Vulnerability Title
Symphony XTS Web Trader和Symphony XTS Mobile Trader 安全漏洞
Vulnerability Description
Symphony XTS Web Trader和Symphony XTS Mobile Trader都是Symphony公司的产品。Symphony XTS Web Trader是一个基于 HTML5 的高级交易平台。Symphony XTS Mobile Trader是一个用于在 iOS 和 Android 设备上进行交易的原生应用程序。 Symphony XTS Web Trader和Symphony XTS Mobile Trader存在安全漏洞,该漏洞源于认证模块的API访问控制不当,可能允许经过
CVSS Information
N/A
Vulnerability Type
N/A