MeltingIce File System 1.0版本远程攻击者可以借助对admin/adduser.php的一个直接请求,绕过身份认证,创建新的用户帐户,以及超过应用程序配额。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-0957 | PhotoStockPlus Uploader Tool ActiveX控件栈溢出漏洞 | |
| CVE-2008-2346 | AlkalinePHP 'adduser.php' 安全绕过漏洞 | |
| CVE-2008-2347 | Mypicgallery 'admin/addUser.php' 安全绕过漏洞 | |
| CVE-2008-2349 | Zomplog 'install/newuser.php' 未授权访问漏洞 | |
| CVE-2008-2350 | bcoos 'file' Parameter 目录遍历漏洞 | |
| CVE-2008-2351 | CMS WebManager-Pro 多个SQL注入漏洞 | |
| CVE-2008-2352 | Smeego ‘index.php’目录遍历漏洞 | |
| CVE-2008-2353 | GNU/Gallery 'admin.php' 目录遍历漏洞 | |
| CVE-2008-2354 | testMaker Data Export 远程信息泄露漏洞 | |
| CVE-2008-2355 | WR-Meeting 'index.php' 目录遍历漏洞 | |
| CVE-2008-2356 | Archangel Management Weblog 'index.php' SQL注入漏洞 |
No comments yet