Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The documentation for CuteNews 1.3.6 and possibly other versions specifies that files under cutenews/data must be manually given world-writable permissions, which allows local users to insert false news, delete news, and possibly gain privileges or have other unknown impact.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CuteNews提升特权漏洞
Vulnerability Description
CuteNews 1.3.6,可能还有其他版本的文档指明cutenews/data的文件必须手动给予全域可写权限,本地用户插入假新闻,删除新闻,并有可能提升特权,或者有其他未知的影响。
CVSS Information
N/A
Vulnerability Type
N/A