Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
V3 Chat allows remote attackers to obtain the installation path via (1) an invalid id parameter to mail/index.php or (2) membername parameter to messenger/online.php, which displays the path in an error page due to an incorrect SQL statement.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
V3 Chat Instant Messenger多个输入验证漏洞
Vulnerability Description
V3 Chat 可以使远程攻击者借助可在由SQL语句不正确而产生的错误页中显示路径的 (1) 对 mail/index.php的无效 id 参数 或 (2) 对messenger/online.php的membername参数,获得安装路径。
CVSS Information
N/A
Vulnerability Type
N/A