积极预防 及时发现
快速响应 力保恢复
在Mambo Site Server 3.0.0到3.0.5中的index2.php允许远程攻击者通...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-20011011 CVE编号:CVE-2001-1011 安全级别:中 漏洞中文描述: 在Mambo Site Server 3.0.0到3.0.5中的index2.php允许远程攻击者通过设置PHPSESSID参数和在其它参数中提供完全的信息来得到Mambo管理员权限。 漏洞英文描述: index2.php in Mambo Site Server 3.0.0 through 3.0.5 allows remote attackers to gain Mambo administrator privileges by setting the PHPSESSID parameter and providing the appropriate administrator information in other parameters. 漏洞参考: 系统类型:其他 漏洞类型:其他