Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in index.php in Noah Medling RCBlog 1.03 allows remote attackers to read arbitrary .txt files, possibly including one that stores the administrator's account name and password, via a .. (dot dot) in the post parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
RCBlog Index.PHP目录遍历漏洞
Vulnerability Description
Noah Medling RCBlog 1.03的index.php中存在目录遍历漏洞,远程攻击者可以通过post参数中的..(两点)读取任意.txt文件,可能包括存储管理员的帐户名称和密码的文件。
CVSS Information
N/A
Vulnerability Type
N/A