Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Static code injection vulnerability in chat_panel.php in the SimpleChat 1.0.0 module for iWare Professional CMS allows remote attackers to inject arbitrary PHP code into chat_log.php via the msg parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
iWare Professional CMS chat_panel.php 静态代码注入漏洞
Vulnerability Description
iWare Professional CMS的SimpleChat模块内的chat_panel.php存在静态代码注入漏洞,远程攻击者通过msg参数来注入任意PHP代码到chat_log.php内。
CVSS Information
N/A
Vulnerability Type
N/A