Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated users to upload arbitrary PHP scripts to the gfx/ and files/ directories via the userfile parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP-Update Admin 'Upload.PHP'任意文件上载漏洞
Vulnerability Description
PHP-Update 2.7及更早版本中的admin/uploads.php存在无限制文件上载漏洞,远程认证用户可以通过userfile参数来上载任意PHP脚本到gfx/和files/目录。
CVSS Information
N/A
Vulnerability Type
N/A