Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Unrestricted file upload vulnerability in Segue CMS before 1.3.6, when the Apache HTTP Server handles .phtml files with the PHP interpreter, allows remote attackers to upload and execute arbitrary PHP code by placing .phtml files in the userfiles/ directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Segue CMS Apache HTTP Server 未限制文件上载漏洞
Vulnerability Description
Segue CMS的1.3.6之前版本当Apache HTTP Server处理带有PHP解析器的.phtml文件时存在未限制文件上载漏洞,远程攻击者可以通过将.phtml文件放置于userfiles/录来上载并执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A