Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in XiaoCms 20141229. admin\controller\database.php allows arbitrary directory deletion via admin/index.php?c=database&a=import&paths[]=../ directory traversal.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
XiaoCms 安全漏洞
Vulnerability Description
XiaoCms是一套基于PHP和MySQL并能够运行在Linux、Windows等平台上的轻量级内容管理系统(CMS)。 XiaoCms 20141229版本中的admincontrollerdatabase.php文件存在安全漏洞。攻击者可借助admin/index.php?c=database&a=import&paths[]=../利用该漏洞删除任意目录。
CVSS Information
N/A
Vulnerability Type
N/A