Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in connector.php in the fckeditor2rc2 addon in DoceboLMS 2.0.4 allows remote attackers to list arbitrary files and directories via ".." sequences in the Type parameter in a GetFoldersAndFiles command.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DoceboLMS Connector.PHP目录遍历漏洞
Vulnerability Description
DoceboLMS 2.0.4的fckeditor2rc2加载项中connector.php内存在目录遍历漏洞,远程攻击者可以通过GetFoldersAndFiles命令的Type参数中的".."(参数中包含'..')序列列出任意文件和目录。
CVSS Information
N/A
Vulnerability Type
N/A