Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
images.php in Justin White (aka YTZ) Free Web Publishing System (FreeWPS) 2.11 allows remote attackers to execute arbitrary PHP code by uploading a .php file into the /upload directory as specified in the dirPath parameter, then performing a direct request to that file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Justin White 'images.php'任意PHP代码执行漏洞
Vulnerability Description
在Justin White (aka YTZ) Free Web出版系统(FreeWPS) 2.11中的images.php,可以让远程攻击者通过上载一个.php文件到在dirPath参数指定的/upload目录下,然后发送一条直接请求到该文件中来执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A