Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple PHP remote file inclusion vulnerabilities in Simpleboard Mambo module 1.1.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the sbp parameter to (1) image_upload.php and (2) file_upload.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SimpleBoard sbp参数远程文件包含漏洞
Vulnerability Description
SimpeBoard是一款开放源代码的论坛模块系统。 SimpleBoard处理用户请求时存在输入验证漏洞,远程攻击者可以利用此漏洞在服务器上以Web进程权限执行任意命令。 SimpleBoard的image_upload.php脚本没有对sbp参数值做充分地检查过滤,攻击者可以通过插入特定的字串使之包含远程服务器上的脚本代码执行。 漏洞相关的代码如下: 在image_upload.php脚本中: require_once("$sbp/sb_helpers.php"); http://www.symant
CVSS Information
N/A
Vulnerability Type
N/A