Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple eval injection vulnerabilities in the help function in PHPKIT 1.6.1 R2 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary code on the server via unknown attack vectors involving uninitialized variables.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHPKIT help函数多个eval注入漏洞
Vulnerability Description
PHPKIT是一套基于Web的内容管理系统(CMS)。该系统提供论坛、留言板等模块。 PHPKIT 1.6.1 R2及以前版本的help函数中存在多个eval注入漏洞,当register_globals选项被启用时,会允许远程攻击者通过未知的攻击方式执行未初始化的变量,从而在服务器上执行任意的代码。
CVSS Information
N/A
Vulnerability Type
N/A