在 itsourcecode 薪资管理系统 1.0 中发现了一个缺陷。受影响的元素是组件 CRUD 操作处理器中 文件的 创建/读取/更新/删除(CRUD)功能。对参数 的操作可能导致缺少身份验证(authentication)。该攻击可远程执行。利用该方法已公开,并可能已被使用。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| itsourcecode | Payroll System | 1.0 |
cpe:2.3:a:itsourcecode:payroll_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No comments yet