CNCVE编号:CNCVE-20000627 CVE编号:CVE-2000-0627 安全级别:中 漏洞中文描述: BlackBoard CourseInfo 4.0不能完全认证用户,这导致本地用户通过直接调用诸如user_update_passwd.pl和user_update_admin.pl的支持CGI程序来修改CourseInfo数据库信息和得到权限。 漏洞英文描述: BlackBoard CourseInfo 4.0 does not properly authenticate users, which allows local users to modify CourseInfo database information and gain privileges by directly calling the supporting CGI programs such as user_update_passwd.pl and user_update_admin.pl. 漏洞参考: 系统类型:其他 漏洞类型:其他