Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in blog.php in fuzzylime (cms) 3.01, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the file parameter. NOTE: it was later reported that 3.01a is also affected.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
fuzzylime (cms) 'blog.php' 本地文件包含漏洞
Vulnerability Description
fuzzylime 是一个内容管理系统,是建立大小不一站点的理想系统.从最小的家庭网站到需要不同人编辑和上传内容的商业网站,它易于安装,仅仅上传一些文件即可。 fuzzylime (cms) 3.01的blog.php中存再目录遍历漏洞。在magic_quotes_gpc被中止时, 远程攻击者通过文件参数中的一个.. (dot dot)来执行任意SQL命令。注意:后来的报告指出3.01a也受此影响。
CVSS Information
N/A
Vulnerability Type
N/A