Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
config/general.php in Quick.Cart 2.2 and earlier uses a default username and password, which allows remote attackers to access the application via a login action to admin.php. NOTE: this can be leveraged to upload and execute arbitrary code.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Quick.Cart上传和执行任意代码漏洞
Vulnerability Description
Quick.Cart中存在上传和执行任意代码漏洞。config/general.php使用一个默认的用户名和密码,这使得远程攻击者可以借助一个对admin.php的登录操作,访问应用程序。
CVSS Information
N/A
Vulnerability Type
N/A