Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Eval injection vulnerability in the fillpdf_form_export_decode function in fillpdf.admin.inc in the Fill PDF module 6.x-1.x before 6.x-1.16 and 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with administer PDFs privileges to execute arbitrary PHP code via unspecified vectors. NOTE: Some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drupal Fill PDF模块代码注入漏洞
Vulnerability Description
Drupal是Drupal社区所维护的一套用PHP语言开发的免费、开源的内容管理系统。 Drupal中的Fill PDF模块6.x-1.16之前的6.x-1.x版本、7.x-1.2之前的7.x-1.x版本中的fillpdf.admin.inc中的‘fillpdf_form_export_decode’函数中存在Eval注入漏洞。远程认证用户可利用该漏洞通过未明向量以管理PDFs的权限执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A