Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Parameter Tampering Vulnerability
Vulnerability Description
This vulnerability exists in Reedos aiM-Star version 2.0.1 due to improper validation of the ‘mode’ parameter in the API endpoint used during the registration process. An authenticated remote attacker could exploit this vulnerability by manipulating parameter in the API request body on the vulnerable application. Successful exploitation of this vulnerability could allow the attacker to bypass certain constraints in the registration process leading to creation of multiple accounts.
CVSS Information
N/A
Vulnerability Type
完整性检查值验证不恰当
Vulnerability Title
Reedos aiM-Star 安全漏洞
Vulnerability Description
Reedos aiM-Star是Reedos公司的一款软件,用于共同基金分销的产品。 Reedos aiM-Star 2.0.1版本存在安全漏洞,该漏洞源于注册过程中使用的API端点中的mode参数验证不当,从而允许攻击者绕过注册过程中的某些约束,创建多个帐户。
CVSS Information
N/A
Vulnerability Type
N/A