Infinite Automation Systems Mango...

- AV AC AU C I A
发布: 2015-10-27
修订: 2025-04-13

Infinite Automation Systems Mango Automation is prone to the following security vulnerabilities: 1. An arbitrary-file-upload vulnerability 2. Multiple information-disclosure vulnerabilities 3. A command-execution vulnerability 4. An SQL-injection vulnerability 5. A cross-site request forgery vulnerability 6. A cross-site scripting vulnerability Attackers may leverage these issues to steal cookie-based authentication credentials, execute arbitrary script code in the browser, perform unauthorized actions, gain unauthorized access, obtain sensitive information, compromise the application, access or modify data and to execute arbitrary commands in the context of the vulnerable application; other attacks are also possible.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息