漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Authentication Bypass Vulnerability in RupeeWeb trading platform
Vulnerability Description
This vulnerability exists in RupeeWeb trading platform due to improper implementation of OTP validation mechanism in certain API endpoints. A remote attacker with valid credentials could exploit this vulnerability by manipulating API responses. Successful exploitation of this vulnerability could allow the attacker to bypass Two-Factor Authentication (2FA) for other user accounts.
CVSS Information
N/A
Vulnerability Type
使用假设不可变数据进行的认证绕过
Vulnerability Title
Rupeeseed RupeeWeb 安全漏洞
Vulnerability Description
Rupeeseed RupeeWeb是印度Rupeeseed公司的一个先进的网络交易平台。 Rupeeseed RupeeWeb存在安全漏洞,该漏洞源于OTP验证机制缺陷,允许绕过双因素认证。
CVSS Information
N/A
Vulnerability Type
N/A