Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in admin/subpages.php in GGCMS 1.1.0 RC1 and earlier allows remote attackers to inject arbitrary PHP code into arbitrary files via ".." sequences in the subpageName parameter, as demonstrated by injecting PHP code into a template file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GGCMS 'admin/subpages.php'目录遍历漏洞
Vulnerability Description
GGCMS 1.1.0 RC1版本及其早期版本的admin/subpages.php中存在目录遍历漏洞。远程攻击者可以借助subpageName参数中的".."序列,向任意文件注入任意PHP代码,例如向一个模板文件中注入PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A