OpenSIS Classic Community Edition... CVE-2023-38885

- AV AC AU C I A
发布: 2023-11-20
修订: 2023-11-30

OpenSIS Classic Community Edition version 9.0 lacks cross-site request forgery (CSRF) protection throughout the whole app. This may allow an attacker to trick an authenticated user into performing any kind of state changing request.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息