Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A Cross Site Request Forgery (CSRF) vulnerability in Code Astro Internet banking system 2.0.0 allows remote attackers to execute arbitrary JavaScript on the admin page (pages_account), potentially leading to unauthorized actions such as changing account settings or stealing sensitive user information. This vulnerability occurs due to improper validation of user requests, which enables attackers to exploit the system by tricking the admin user into executing malicious scripts.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CodeAstro Internet Banking System 跨站请求伪造漏洞
Vulnerability Description
CodeAstro Internet Banking System是CodeAstro公司的一个PHP网上银行系统。 CodeAstro Internet Banking System 2.0.0版本存在安全漏洞。攻击者利用该漏洞可以在管理页面 (pages_account) 上执行任意 JavaScript,从而更改帐户设置或窃取敏感用户信息。
CVSS Information
N/A
Vulnerability Type
N/A