Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
WisdomGarden|Tronclass - Insecure Direct Object Reference
Vulnerability Description
Tronclass developed by WisdomGarden has an Insecure Direct object Reference vulnerability, allowing remote attackers with regular privilege to modify a specific parameter to access other users' files.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
通过用户控制密钥绕过授权机制
Vulnerability Title
WisdomGarden Tronclass 安全漏洞
Vulnerability Description
WisdomGarden Tronclass是中国智园(WisdomGarden)公司的一款互动式教学管理平台。 WisdomGarden Tronclass存在安全漏洞,该漏洞源于不安全的直接对象引用,可能导致远程攻击者通过修改特定参数访问其他用户文件。
CVSS Information
N/A
Vulnerability Type
N/A