Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Static code injection vulnerability in admin.php in sun-jester OpenNews 1.0 allows remote authenticated administrators to inject arbitrary PHP code into config.php via the "Overall Width" field in a setconfig action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
sun-jester opennews 脚本admin.php代码注入漏洞
Vulnerability Description
sun-jester OpenNews 1.0的admin.php中的静态代码注入漏洞。会允许远程授权管理者通过一个setconfig操作中的"总宽度"来注入任意PHP编码。
CVSS Information
N/A
Vulnerability Type
N/A