Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Absolute path traversal vulnerability in install/index.php in Drake CMS 0.4.11 RC8 allows remote attackers to read and execute arbitrary files via a full pathname in the d_root parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drake CMS 'install/index.php' 完全路径遍历漏洞
Vulnerability Description
Drake CMS 0.4.11 RC8的install/index.php中的完全路径遍历漏洞。远程攻击者通过一个在d_root参数中的一个完整路径名来读取和执行任意文件。
CVSS Information
N/A
Vulnerability Type
N/A