漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attackers to obtain the administrator username and password via a direct request to control/backup/backup.php, which generates a backup/dump/backup.sql file that can be downloaded via a direct request to control/downloadfile.php.
漏洞信息
N/A
漏洞
N/A
漏洞
Hotscripts Hot_or_Not_Clone control/backup/backup.php 权限许可和访问控制漏洞
漏洞信息
Hot or Not Clone 对制造和读取数据备份不能充分控制,远程攻击者可以借助一个直接请求控制备份backup.php并导致backup/dump/backup.sql可以被下载,以此远程攻击者可以获得管理员的用户名和密码。
漏洞信息
N/A
漏洞
N/A