Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PHP file inclusion vulnerability in php121db.php in PHP121 Instant Messenger 2.2 allows remote attackers to execute arbitrary PHP code via a UNC share pathname or a local file pathname in the php121dir parameter, which is accessed by the file_exists function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHP121 Instant Messenger 'php121db.PHP' 本地文件包含漏洞
Vulnerability Description
PHP121 Instant Messenger的php121db.php中存在PHP文件包含漏洞。远程攻击者可以借助php121dir参数中的一个UNC共享路径名或本地文件路径名,执行任意的PHP代码。该参数会被file_exists函数访问。
CVSS Information
N/A
Vulnerability Type
N/A