Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Improper verification of access permissions when modifying permissions through the Administration Control Panel (ACP) allowed an authenticated administrator to grant permissions beyond the level authorized for their account, resulting in privilege escalation within the administrative interface.
CVSS Information
N/A
Vulnerability Type
访问控制不恰当
Vulnerability Title
phpBB 权限许可和访问控制问题漏洞
Vulnerability Description
phpBB是phpbb团队开源的一套基于PHP的Web论坛软件。 phpBB 3.3.0至3.3.16及之前版本存在权限许可和访问控制问题漏洞,该漏洞源于通过管理控制面板修改权限时访问权限验证不当,可能导致经过身份验证的管理员授予超出其账户授权级别的权限,从而实现管理界面内的权限提升。
CVSS Information
N/A
Vulnerability Type
N/A