Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Vision Helpdesk before 5.7.0 (patched in 5.6.10) allows attackers to read user profiles via modified serialized cookie data to vis_client_id.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
直接请求(强制性浏览)
Vulnerability Title
Vision Helpdesk 安全漏洞
Vulnerability Description
Vision Helpdesk是印度Vision Helpdesk公司的一款客户服务软件。 Vision Helpdesk 5.7.0之前版本存在安全漏洞,该漏洞源于序列化cookie数据操作不当,可能导致读取用户配置文件。
CVSS Information
N/A
Vulnerability Type
N/A