Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in com\mingsoft\cms\action\GeneraterAction.java in MCMS 4.6.5. An attacker can write a .jsp file (in the position parameter) to an arbitrary directory via a ../ Directory Traversal in the url parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MCMS 安全漏洞
Vulnerability Description
MCMS是一款基于Spring、SpringMVC、Mybatis的Java快速开发平台。 MCMS 4.6.5版本中的com\mingsoft\cms\action\GeneraterAction.java文件存在安全漏洞。攻击者可利用该漏洞向任意目录写入.jsp文件。
CVSS Information
N/A
Vulnerability Type
N/A