Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The patch for directory traversal (CVE-2017-5480) in b2evolution version 6.8.4-stable has a bypass vulnerability. An attacker can use ..\/ to bypass the filter rule. Then, this attacker can exploit this vulnerability to delete or read any files on the server. It can also be used to determine whether a file exists.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
b2evolution 信息泄露漏洞
Vulnerability Description
b2evolution是软件开发者Francois Planque所研发的一套基于PHP和MySQL的博客软件。 b2evolution 6.8.4-stable版本中安全漏洞。攻击者可利用该漏洞删除或读取服务器上的任意文件。
CVSS Information
N/A
Vulnerability Type
N/A