Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
myEvent 1.6 allows remote attackers to obtain sensitive information via (1) a Log In action without a password to login.php, or an invalid (2) view[] or (3) monthno[] parameter to myevent.php, which reveals the path in various error messages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
myEvent 'myevent.php' 多路径破解漏洞
Vulnerability Description
myEvent 允许远程攻击者借助一个登陆操作或提交到myevent.php的无效的(2)view[]或(3)monthno[]参数,获得敏感信息。这会在不同的错误信息中显示路径。
CVSS Information
N/A
Vulnerability Type
N/A