漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Broken Access Control results in Denial of Service in NesterSoft WorkTime
Vulnerability Description
Any unauthenticated user can reset the WorkTime on-prem database configuration by sending a specific HTTP request to the WorkTime server. No authorization check is applied here.
CVSS Information
N/A
Vulnerability Type
授权机制缺失
Vulnerability Title
NesterSoft WorkTime 安全漏洞
Vulnerability Description
NesterSoft WorkTime是加拿大NesterSoft公司的一个项目跟踪软件。 NesterSoft WorkTime存在安全漏洞,该漏洞源于未授权检查,可能导致数据库配置被重置。
CVSS Information
N/A
Vulnerability Type
N/A