Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and .. (dot dot) sequences into a malformed username argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP-Nuke权限漏洞
Vulnerability Description
PHP-Nuke 4.4版本中的bb_smilies.php和bbcode_ref.php 存在漏洞。远程攻击者可以通过注入零字符和..(点 点)序列到畸形用户名参数中读取任意文件和提升PHP管理员权限。
CVSS Information
N/A
Vulnerability Type
N/A