Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Lexiglot through 2014-11-20 allows remote attackers to obtain sensitive information (full path) via an include/smarty/plugins/modifier.date_format.php request if PHP has a non-recommended configuration that produces warning messages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Lexiglot 路径遍历漏洞
Vulnerability Description
Lexiglot是法国Damien Sorel软件开发者的一套使用PHP语言编写的翻译平台。 Lexiglot 2014-11-20及之前版本中存在安全漏洞。远程攻击者可借助include/smarty/plugins/modifier.date_format.php URL利用该漏洞获取敏感信息(完整路径)。
CVSS Information
N/A
Vulnerability Type
N/A