Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
MRCMS 3.1.2 contains an access control vulnerability. The save() method in src/main/java/org/marker/mushroom/controller/UserController.java lacks proper authorization validation, enabling direct addition of super administrator accounts without authentication.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MRCMS 安全漏洞
Vulnerability Description
MRCMS是marker个人开发者的一个内容管理系统。 MRCMS 3.1.2版本存在安全漏洞,该漏洞源于访问控制不当,可能导致未经身份验证直接添加超级管理员账户。
CVSS Information
N/A
Vulnerability Type
N/A