Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Ploticus module in PhpWiki 1.5.0 allows remote attackers to execute arbitrary code via shell metacharacters in a device option in the edit[content] parameter to index.php/HeIp. NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PhpWiki Ploticus模块代码注入漏洞
Vulnerability Description
PhpWiki是一套运行于PHP环境中的开源Wiki引擎程序。 PhpWiki 1.5.0版本的Ploticus模块中存在安全漏洞,该漏洞源于index.php/HeIp URL没有充分过滤‘edit[content]’参数。远程攻击者可借助‘device’选项中的shell元字符利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A