Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Eval injection vulnerability in the template engine for SysCP 1.2.10 and earlier allows remote attackers to execute arbitrary PHP code via a string containing the code within "{" and "}" (curly bracket) characters, which are processed by the PHP eval function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SysCP 模板引擎 Eval注入漏洞
Vulnerability Description
SysCP 1.2.10及其早期版本的模板引擎中存在Eval注入漏洞。这使得远程攻击者可以借助于包含位于"{"和"}"(花括号),由PHP eval函数处理)中的代码的字符串执行任意的PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A