Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in damiCMS V6.0.1. Remote code execution can occur via PHP code in a multipart/form-data POST to the admin.php?s=/Tpl/Update.html URI. For example, this can update the Web/Tpl/default/head.html file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
damiCMS 安全漏洞
Vulnerability Description
DamiCMS是一套用于快速搭建网站的内容管理系统(CMS)。 damiCMS 6.0.1版本中存在远程执行代码漏洞。远程攻击者可通过向admin.php?s=/Tpl/Update.html URI发送含有PHP代码的multipart/form-data POST请求利用该漏洞执行代码,例如,更新Web/Tpl/default/head.html文件。
CVSS Information
N/A
Vulnerability Type
N/A