Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Pluck CMS 4.7.2 allows remote attackers to obtain sensitive information by (1) changing "PHPSESSID" to an array; (2) adding non-alphanumeric chars to "PHPSESSID"; (3) changing the image parameter to an array; or (4) changing the image parameter to a string, which reveals the installation path in an error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pluck CMS 信息泄露漏洞
Vulnerability Description
Pluck CMS是一套使用php编写的内容管理系统(CMS)。 Pluck CMS 4.7.2版本中存在安全漏洞。远程攻击者利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A