Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Twigmo bundled with CS-Cart 4.3.9 and earlier and Twigmo bundled with CS-Cart Multi-Vendor 4.3.9 and earlier allow remote authenticated users to execute arbitrary PHP code on the servers.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CS-Cart Twigmo插件代码注入漏洞
Vulnerability Description
CS-Cart是CS-Cart团队开发的一套基于PHP和MySQL的电子商务软件系统。该系统支持第三方软件扩展、自定义促销策略、产品筛选定义等。Twigmo是其中的一个专为手机终端开发的模板插件。 CS-Cart Twigmo插件中存在安全漏洞。远程攻击者可利用该漏洞在服务器上执行任意PHP代码。以下版本受到影响:Twigmo bundled with CS-Cart 4.3.9及之前的版本和Twigmo bundled with CS-Cart Multi-Vendor 4.3.9及之前的版本。
CVSS Information
N/A
Vulnerability Type
N/A