Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
highlight.php in (1) RUNCMS 1.1A, (2) CIAMOS 0.9.2 RC1, (3) e-Xoops 1.05 Rev3, and possibly other products based on e-Xoops (exoops), allows remote attackers to read arbitrary PHP files by specifying the pathname in the file parameter, as demonstrated by reading database configuration information from mainfile.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
RunCMS数据库配置信息泄露漏洞
Vulnerability Description
(1)RUNCMS 1.1A,(2)CIAMOS 0.9.2 RC1,(3)e-Xoops 1.05 Rev3及可能的其他基于e-Xoops (exoops)的产品中的highlight.php使得远程攻击者可以通过在文件参数中指定路径名来读取任意PHP文件,如从mainfile.php中读取数据库配置信息。
CVSS Information
N/A
Vulnerability Type
N/A