Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Meilad File upload script (up.php) mod for phpBB 2.0.x does not properly limit the types of files that can be uploaded, which allows remote authenticated users to execute arbitrary commands by uploading PHP files, then directly requesting them from the uploads directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
phpBB up.php任意文件上传漏洞
Vulnerability Description
File Upload Script是phpBB论坛程序的一个文件上传脚本。 phpBB论坛中的文件上传脚本可能允许远程的注册用户在有漏洞的服务器上执行任意代码。这可能导致对受影响服务器的非授权访问。 此外,本地或远程攻击者还可能读取config.php文件,导致泄漏数据库信息和FTP口令。
CVSS Information
N/A
Vulnerability Type
N/A