Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
article.php in PHP FirstPost 0.1 allows allows remote attackers to obtain the full pathname of the server via an invalid post number in the post parameter, which leaks the pathname in an error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP FirstPost存在路径泄露漏洞
Vulnerability Description
PHP FirstPost是一款PHP WEB日志程序,包含一个开放的提议队列和评估系统。 PHP FirstPost对不存在的页面请求处理不正确,可导致wwwroot目录路径泄露。 远程用户可以提交一个不存在的页面给PHP FirstPost服务程序,使BPHP FirstPost返回错误信息并显示wwwroot目录的绝对路径。 此信息泄露可帮助攻击者进一步对系统进行攻击。
CVSS Information
N/A
Vulnerability Type
N/A