Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Direct static code injection vulnerability in admincp/user_help.php in Headstart Solutions DeskPRO 3.0.2 allows remote authenticated users to inject arbitrary PHP code into an unspecified file via a new_entry value in the do parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Headstart Solutions DeskPRO'admincp/user_help.php'直接静态代码注入漏洞
Vulnerability Description
Headstart Solutions DeskPRO 3.0.2版本的admincp/user_help.php中存在直接静态代码注入漏洞。远程验证用户可以借助do参数中的一个new_entry值,向未明文件注入任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A