Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Afian FileRun (before 2018.02.13) suffers from a remote SQL injection vulnerability, when logged in as superuser, via the search parameter in a /?module=metadata§ion=cpanel&page=list_filetypes request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Afian FileRun SQL注入漏洞
Vulnerability Description
Afian FileRun是瑞典Afian AB公司的一款可扩展的文件管理器,它具有文件共享、云端文件存储等功能。 Afian FileRun 2018.02.13之前版本中存在SQL注入漏洞。远程攻击者可借助/?module=metadata§ion=cpanel&page=list_filetypes请求中的‘search’参数利用该漏洞执行SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A