Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The eyeHome function in apps/eyeHome.eyeapp/aplic.php in EyeOS before 0.9.3-3 allows remote attackers to upload and execute arbitrary code via dangerous file extensions that are not all lowercase, which bypasses a cleansing operation.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
EyeOS 'Aplic.PHP'任意文件上载漏洞
Vulnerability Description
EyeOS的0.9.3-3之前版本中的apps/eyeHome.eyeapp/aplic.php的eyeHome函数存在任意文件上载漏洞。远程攻击者可以通过非完全小写的危险的文件名扩展(绕过清除操作)来上载和执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A