Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Gatling Enterprise versions below 1.25.0, a low-privileged user that does not hold the role "admin" could perform a REST API call on read-only endpoints, allowing him to collect some information, due to missing authorization checks.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gatling Enterprise 安全漏洞
Vulnerability Description
Gatling Enterprise是法国Gatling公司的一个负载测试与性能测试管理平台。 Gatling Enterprise 1.25.0之前版本存在安全漏洞,该漏洞源于缺少授权检查,可能导致低权限用户访问只读端点。
CVSS Information
N/A
Vulnerability Type
N/A