Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
CRMEB through 6.0.0 Unauthorized Message Modification via edit_message
Vulnerability Description
CRMEB through 6.0.0 fails to validate message ownership in the edit_message handler of MessageSystemController.php, allowing authenticated users to modify arbitrary system inbox messages. Attackers can update any message's columns including is_del, look, and uid to delete, mark read, or reassign victim notifications without authorization.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L
Vulnerability Type
通过用户控制密钥绕过授权机制
Vulnerability Title
CRMEB 授权问题漏洞
Vulnerability Description
CRMEB是CRMEB组织开源的一个 Java 商城系统。 CRMEB 6.0.0及之前版本存在授权问题漏洞,该漏洞源于MessageSystemController.php中的edit_message处理程序未验证消息所有权,导致已认证用户可修改任意系统收件箱消息,攻击者可更新任意消息的is_del、look和uid列,以删除、标记已读或重新分配受害者通知。
CVSS Information
N/A
Vulnerability Type
N/A