Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Static code injection vulnerability in admin/install.php in Flexcustomer 0.0.6 might allow remote attackers to inject arbitrary PHP code into const.inc.php via the installdbname parameter (aka the Database Name field). NOTE: the installation instructions specify deleting admin/install.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
China-On-Site Flexcustomer 'admin/install.php'代码注入漏洞
Vulnerability Description
Flexcustomer 0.0.6版本中的admin/install.php存在静态代码注入漏洞。远程攻击者可以借助installdbname参数(又称数据库名字段),注入任意的PHP代码到const.inc.php。
CVSS Information
N/A
Vulnerability Type
N/A