Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Eval injection vulnerability in Tagger LE allows remote attackers to execute arbitrary PHP code via the query string in (1) tags.php, (2) sign.php, and (3) admin/index.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tagger LE Eval注入漏洞
Vulnerability Description
Tagger LE是一个小型的留言板,允许访客与站点交互,以及相互之间的通讯。 Tagger LE在处理用户请求时存在输入验证漏洞,远程攻击者可能利用此漏洞在服务器上执行任意命令。 Tagger LE没有在eval()调用中使用之前正确地过滤提交到tags.php、sign.php和admin/index.php脚本的查询字符串输入,远程攻击者通过特制的参数名或参数值注入并执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A