Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
MauryCMS 0.53.2 and earlier does not require administrative authentication for Editors/fckeditor/editor/filemanager/browser/default/browser.html, which allows remote attackers to upload arbitrary files via a direct request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cms.Maury91 MauryCM授权问题漏洞
Vulnerability Description
MauryCMS 0.53.2及其早期版本对Editors/fckeditor/editor/filemanager/browser/default/browser.html不需要管理权限,这会允许远程攻击者通过 提交一个直接的请求来上传任意文件。
CVSS Information
N/A
Vulnerability Type
N/A