Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
include/debug.php in Webfwlog 0.92 and earlier, when register_globals is enabled, allows remote attackers to obtain source code of files via the conffile parameter. NOTE: some of these details are obtained from third party information. It is likely that this issue can be exploited to conduct directory traversal attacks.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WebFWLog 'Debug.PHP' 信息泄露漏洞
Vulnerability Description
Webfwlog 0.92及其早期版本的include/debug.php,当register_globals被激活时,远程攻击者可以借助conffile参数,获得文件的源代码。该漏洞可能被利用来执行目录遍历攻击。
CVSS Information
N/A
Vulnerability Type
N/A