Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
w-agora 4.2.1 allows remote attackers to obtain sensitive information by via the (1) bn[] array parameter to index.php, which expects a string, and (2) certain parameters to delete_forum.php, which displays the path name in the resulting error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
w-agora 多个信息泄露漏洞
Vulnerability Description
w-agora 4.2.1版本允许远程攻击者借助提交到index.php的(1)bn[]数组参数和到delete_forum.php的(2)特定参数,获得敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A