Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Lylme Spage v1.9.5 is vulnerable to Incorrect Access Control. There is no limit on the number of login attempts, and the verification code will not be refreshed after a failed login, which allows attackers to blast the username and password and log into the system backend.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Lylme Spage 安全漏洞
Vulnerability Description
LyLme Spage(六零导航页)是中国六零(LyLme)开源的一个导航页面。致力于简洁高效无广告的上网导航和搜索入口,支持后台添加链接、自定义搜索引擎,沉淀最具价值链接,全站无商业推广,简约而不简单。 Lylme Spage v1.9.5版本存在安全漏洞,该漏洞源于访问控制不当,允许攻击者进行用户名和密码的爆破攻击,并登录系统后台。
CVSS Information
N/A
Vulnerability Type
N/A