Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Direct static code injection vulnerability in includes/newtopic.php in SimpleBBS 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the Host header (possibly the name parameter or variable), which is then written to data/topics.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SimpleBBS远程命令执行漏洞
Vulnerability Description
SimpleBBS是一款开源的PHP论坛程序。 由于没有正确的验证用户输入,远程攻击者可以在SimpleBBS服务器上执行任意PHP命令。
CVSS Information
N/A
Vulnerability Type
N/A