Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Geeklog 1.4.0sr2 and earlier allows remote attackers to obtain the full installation path via a direct request and possibly invalid arguments to (1) layout/professional/functions.php or (2) getimage.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Geeklog 多个输入验证漏洞
Vulnerability Description
Geeklog 1.4.0sr2及之前版本可以使远程攻击者借助对(1) layout/professional/functions.php或(2) getimage.php的直接请求及可能的无效自变量,获得完整的安装路径。.
CVSS Information
N/A
Vulnerability Type
N/A