Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Appnitro MachForm before 4.2.3. The module in charge of serving stored files gets the path from the database. Modifying the name of the file to serve on the corresponding ap_form table leads to a path traversal vulnerability via the download.php q parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Appnitro MachForm 路径遍历漏洞
Vulnerability Description
Appnitro MachForm是印度尼西亚Appnitro Software公司的一款用于在网页中创建响应式表单的工具。 Appnitro MachForm 4.2.3之前版本中存在路径遍历漏洞。攻击者可通过向download.php文件发送‘q’参数利用该漏洞访问系统上的任意文件。
CVSS Information
N/A
Vulnerability Type
N/A