漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
University of Central Florida Materia API Controller api.php before cross-site request forgery
Vulnerability Description
A vulnerability classified as problematic has been found in University of Central Florida Materia up to 9.0.0. This affects the function before of the file fuel/app/classes/controller/api.php of the component API Controller. The manipulation leads to cross-site request forgery. It is possible to initiate the attack remotely. Upgrading to version 9.0.1-alpha1 is able to address this issue. The name of the patch is af259115d2e8f17068e61902151ee8a9dbac397b. It is recommended to upgrade the affected component. The identifier VDB-215973 was assigned to this vulnerability.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Vulnerability Type
跨站请求伪造(CSRF)
Vulnerability Title
University of Central Florida Materia 跨站请求伪造漏洞
Vulnerability Description
Materia是University of Central Florida开源的一个让学生使用易于嵌入的在线课程应用程序。 University of Central Florida Materia 9.0.1-alpha1版本及之前版本存在跨站请求伪造漏洞。攻击者利用该漏洞执行跨站点请求伪造攻击。
CVSS Information
N/A
Vulnerability Type
N/A