Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Bundle copy module 7.x-1.x before 7.x-1.1 for Drupal does not check for the "use PHP for settings" permission while importing settings, which allows remote authenticated users with certain permissions to execute arbitrary PHP code via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Drupal Bundle复制模块任意PHP代码执行漏洞
Vulnerability Description
Drupal是Drupal社区所维护的一套用PHP语言开发的免费、开源的内容管理系统。 Drupal中的Bundle复制模块7.x-1.1之前的7.x-1.x版本中存在漏洞,该漏洞源于输入设置未校验‘使用PHP设置’权限。远程认证用户可利用该漏洞通过未明向量以一定特权执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A