在 PHPGurukul 用户注册与登录及用户管理系统 3.3 版本中发现了一个漏洞。受影响的组件是“密码更改处理器”(Change Password Handler),具体位于文件 中的某个未知函数。通过对参数 进行操控,可导致身份验证逻辑出现错误,从而造成不正确的授权结果。该漏洞支持远程利用,相关 exploits 已公开披露,可被恶意利用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| PHPGurukul | User Registration & Login and User Management System | 3.3 |
cpe:2.3:a:phpgurukul:user_registration_login_and_user_management_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet