Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ext_find_user in eXtplorer through 2.1.2 allows remote attackers to bypass authentication via a password[]= (aka an empty array) in an action=login request to index.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
eXtplorer 安全漏洞
Vulnerability Description
eXtplorer是一套基于PHP的在线文件管理程序,它支持在线浏览文件和文件夹以及作为FTP客户端登录FTP服务器。 eXtplorer 2.1.2、2.1.1和2.1.0版本中的ext_find_user()函数中存在身份验证绕过漏洞。远程攻击者可通过向index.php文件发送action=login请求利用该漏洞绕过认证机制并获取未授权访问。
CVSS Information
N/A
Vulnerability Type
N/A