Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Eval injection vulnerability in ezDatabase 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the db_id parameter to visitorupload.php, as demonstrated using phpinfo and include function calls.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EZDatabase Eval注入漏洞
Vulnerability Description
ezDatabase 2.0及更早版本中存在Eval注入漏洞,远程攻击者可以通过visitorupload.php的db_id参数执行任意PHP代码,如使用phpinfo并包含函数调用所示。
CVSS Information
N/A
Vulnerability Type
N/A