Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in MoinMoin 1.5.8 and earlier allows remote attackers to overwrite arbitrary files via a .. (dot dot) in the MOIN_ID user ID in a cookie for a userform action. NOTE: this issue can be leveraged for PHP code execution via the quicklinks parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MoinMoin MOIN_id Cookie 目录遍历漏洞
Vulnerability Description
MoinMoin 存在目录遍历漏洞。远程攻击者可以通过一个userform操作的cookie中的MOIN_id user id(插入..)来覆盖写入任意文件。注意:这个漏洞会通过快捷链接参数扩散到php代码执行。
CVSS Information
N/A
Vulnerability Type
N/A