Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
preferences.php in Simple Internet Publishing System (SIPS) before 0.3.1 allows remote attackers to gain administrative privileges via a linebreak in the "theme" field followed by the Status::admin command, which causes the Status line to be entered into the password file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SIPS主题表单控制漏洞
Vulnerability Description
Simple Internet Publishing System (SIPS) 0.3.1之前版本中的preferences.php存在漏洞。远程攻击者可以借助带有Status::admin命令的“theme”字段的换行符获取管理员权限,该漏洞可以导致将状态栏写入密码文件。
CVSS Information
N/A
Vulnerability Type
N/A