Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PaintBBS 1.2 installs certain files and directories with insecure permissions, which allows local users to (1) obtain the encrypted server password via the world-readable oekakibbs.conf file, or (2) modify the server configuration via the world-writeable /oekaki/ folder.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PaintBBS不安全默认许可漏洞
Vulnerability Description
PaintBBS 1.2版本安装某些文件和有不安全许可的目录时存在漏洞。本地用户借助全域可读的oekakibbs.conf文件(1)获得加密服务器密码或者借助全域可读的/oekaki/文件夹(2)修改服务器配置。
CVSS Information
N/A
Vulnerability Type
N/A