Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PHP remote file inclusion vulnerability in MobilePublisherphp 1.1.2 allows remote attackers to execute arbitrary PHP code via a URL in the auth_method parameter to (1) index.php, (2) list.php, (3) postreview.php, (4) reindex.php, (5) sections.php, (6) templates.php, (7) userinfo.php, (8) users.php, and (9) view.php in admin/. NOTE: this issue has been disputed by a reliable third party, who states that $auth_method is defined before use
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MobilePublisherphp 多个PHP文件远程文件包含漏洞
Vulnerability Description
MobilePublisherphp中存在PHP远程文件包含漏洞。远程攻击者可以借助提交到admin/中的(1)index.php,(2)list.php,(3)postreview.php,(4)reindex.php,(5)sections.php,(6)templates.php,(7)userinfo.php,(8)users.php和(9)view.php文件的auth_method参数中的一个URL,执行任意的PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A