Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
onefilecms.php in OneFileCMS through 2017-10-08 might allow attackers to read arbitrary files via the i and f parameters, as demonstrated by ?i=etc/&f=passwd&p=raw_view for the /etc/passwd file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OneFileCMS 安全漏洞
Vulnerability Description
OneFileCMS是一套轻量级CMS系统。该系统基于PHP和JavaScript运行,包括文档编辑、文件上传和文件管理等功能。 OneFileCMS 2017-10-08及之前版本中的onefilecms.php文件存在安全漏洞。攻击者可借助‘i’和‘f’参数利用该漏洞读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A