漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
dadaIMC .99.3 uses an insufficiently restrictive FilesMatch directive in the installed .htaccess file, which allows remote attackers to execute arbitrary PHP code by uploading files whose names contain (1) feature, (2) editor, (3) newswire, (4) otherpress, (5) admin, (6) pbook, (7) media, or (8) mod, which are processed as PHP file types (application/x-httpd-php).
漏洞信息
N/A
漏洞
N/A
漏洞
dadaIMC '.htaccess'文件任意PHP代码执行漏洞
漏洞信息
dadaIMC .99.3在已经安装的.htaccess文件中使用不充分限制的FilesMatch指令,远程攻击者可以通过上载文件名中含有(1)feature,(2)editor,(3)newswire,(4)otherpress,(5)admin,(6)pbook,(7)media或(8)mod的文件(当作PHP文件类型处理(application/x-httpd-php)来执行任意PHP代码。
漏洞信息
N/A
漏洞
N/A