Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Pagekit CMS 1.0.18 Privilege Escalation via UserApiController
Vulnerability Description
Pagekit CMS 1.0.18 contains a privilege escalation vulnerability that allows authenticated users with the 'user: manage users' permission to escalate privileges by assigning arbitrary custom roles to themselves due to missing authorization checks in UserApiController::saveAction(). Attackers can assign themselves a custom role with the 'system: manage packages' permission and then upload and install a malicious PHP package through the admin package installer to achieve remote code execution.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
授权机制缺失
Vulnerability Title
pagekit 授权问题漏洞
Vulnerability Description
Pagekit是Pagekit公司开源的一套模块化的、轻量级CMS(内容管理系统)。 Pagekit 1.0.18版本存在授权问题漏洞,该漏洞源于UserApiController::saveAction()中缺失授权检查,可能导致拥有'user: manage users'权限的已认证用户通过分配自定义角色以实现权限提升。
CVSS Information
N/A
Vulnerability Type
N/A