Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Pixelpost 1-5rc1-2 and earlier, when register_globals is enabled, allows remote attackers to gain administrator privileges and conduct other attacks by setting the _SESSION["pixelpost_admin"] parameter to 1 in calls to admin scripts such as admin/view_info.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pixelpost 多个SQL注入漏洞
Vulnerability Description
Pixelpost 1-5rc1-2及更早版本,当启用register_globals时,远程攻击者通过在调用管理脚本(如admin/view_info.php)时设置_SESSION["pixelpost_admin"]参数为1,获取管理员特权并执行其他攻击。
CVSS Information
N/A
Vulnerability Type
N/A