漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
SourceCodester Inventory Management System resetPassword.php password recovery
Vulnerability Description
A weakness has been identified in SourceCodester Inventory Management System 1.0. The affected element is an unknown function of the file /model/user/resetPassword.php. Executing manipulation can lead to weak password recovery. The attack may be performed from remote. The exploit has been made available to the public and could be exploited.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Vulnerability Type
忘记口令恢复机制弱
Vulnerability Title
SourceCodester Inventory Management System 授权问题漏洞
Vulnerability Description
SourceCodester Inventory Management System是SourceCodester开源的一个库存管理系统。 SourceCodester Inventory Management System 1.0版本存在授权问题漏洞,该漏洞源于文件/model/user/resetPassword.php中未知函数对参数的错误操作,可能导致弱密码恢复。
CVSS Information
N/A
Vulnerability Type
N/A