HackTips.

页面数据均来自于CVE官方,仅调用Api进行查询

1@1042.net

CVE编号CVE-2025-27910
发布日期2025-03-10T00:00:00.000Z
更新日期2025-03-12T15:26:25.626Z
状态PUBLISHED
受影响的供应商n/a
受影响的产品n/a
描述tianti v2.3 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /user/ajax/upd/status. This vulnerability allows attackers to execute arbitrary operations via a crafted GET or POST request.

参考链接:

Image Additional Image