Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in PHPYun V4.6. There is a vulnerability that can delete any file or directory via the "admin/index.php?m=database&c=del" sql parameter because del_action() in admin/model/database.class.php mishandles this parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHPYun 输入验证错误漏洞
Vulnerability Description
PHPYun是一套基于MySQL和PHP的开源招聘系统。 PHPYun 4.6版本中的admin/model/database.class.php文件的‘del_action()’函数存在安全漏洞。攻击者可通过向admin/index.php?m=database&c=del发送‘sql’参数利用该漏洞删除任意文件或目录。
CVSS Information
N/A
Vulnerability Type
N/A