Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
mapFiler.php in Mapbender 2.4 to 2.4.4 allows remote attackers to execute arbitrary PHP code via PHP code sequences in the factor parameter, which are not properly handled when accessing a filename that contains those sequences.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mapbender 'mapFiler.php' 代码注入漏洞
Vulnerability Description
Mapbender中的mapFiler.php存在代码注入漏洞。远程攻击者通过系数参数中的PHP代码序列来执行任意PHP代码。该序列在登陆包含该序列的文件名时并没经过合适的处理。
CVSS Information
N/A
Vulnerability Type
N/A