Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
miniCMS 1.0 and 2.0 allows remote attackers to execute arbitrary PHP code via a crafted (1) pagename or (2) area variable containing an executable extension, which is not properly handled by (a) update.php when writing files to content/, or (b) updatenews.php when writing files to content/news/.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
miniCMS多个安全漏洞
Vulnerability Description
miniCMS中存在多个漏洞,这些漏洞源于对用户提供的数据未经正确过滤。攻击者可利用这些漏洞执行任意PHP代码,操控受影响的应用程序或者底层计算机。miniCMS 1.0版本与2.0版本中存在该漏洞,其他版本也可能受影响。
CVSS Information
N/A
Vulnerability Type
N/A