Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Free Host Shop Website Generator 3.3 allows remote authenticated users with administrative privileges to upload and execute arbitrary files via a formname parameter with a filename containing a dangerous file extension and a trailing %00.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FreeHostShop Website Generator任意文件上传漏洞
Vulnerability Description
Free Host Shop Website Generator 3.3可使具有管理权限的远程认证用户借助formname参数(具有包含危险文件扩展名以及%00后缀的文件名)上传并执行任意文件。
CVSS Information
N/A
Vulnerability Type
N/A