Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Electron Inc. Advanced Electron Forum before 1.0.7 allows remote attackers to execute arbitrary PHP code via PHP code embedded in bbcode in the email parameter, which is processed by the preg_replace function with the eval switch.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Advanced Electron Forum preg_replace调用远程代码执行漏洞
Vulnerability Description
Advanced Electron Forum(AEF)是一套使用PHP语言编写的在线论坛系统。 Advanced Electron Forum论坛没有安全地调用带有e修饰符的preg_replace()方式: //Email Links if($globals['bbc_email']){ $text = preg_replace( array("/\[email=(.*?)\](.*?)\[\/email\]/ies", "/\[email\](.*?)\[\/email\]/ies"), array
CVSS Information
N/A
Vulnerability Type
N/A