脆弱性情報
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
脆弱性タイトル
PDF Document Spoofing in Documenso
脆弱性説明
User Interface (UI) Misrepresentation of Critical Information vulnerability in Documenso allows Content Spoofing.Displayed version does not show the layer flattened version, once download, If printed (e.g. via Google Chrome -> Examine the print preview): Will render the vulnerability only, not all layers are flattened. This issue affects Documenso: through 1.8.0, >1.8.0 and Documenso SaaS (Hosted) as of 2024-12-05.
CVSS情報
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:N/VI:H/VA:N/SC:N/SI:H/SA:N/U:Red
脆弱性タイプ
关键信息的UI错误表达
脆弱性タイトル
Documenso 安全漏洞
脆弱性説明
Documenso是Documenso开源的一个开源 DocuSign 替代方案。 Documenso 1.8.0之前版本存在安全漏洞,该漏洞源于用户界面对关键信息的错误表示,允许内容欺骗。
CVSS情報
N/A
脆弱性タイプ
N/A