Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Application/Admin/Controller/ConfigController.class.php in 74cms v5.0.1 allows remote attackers to execute arbitrary PHP code via the index.php?m=Admin&c=config&a=edit site_domain parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
迅易科技 74cms 代码注入漏洞
Vulnerability Description
迅易科技 74cms是中国迅易科技公司的一套基于PHP和MySQL的在线招聘系统。 迅易科技 74cms v5.0.1版本中的Application/Admin/Controller/ConfigController.class.php文件存在代码注入漏洞。该漏洞源于外部输入数据构造代码段的过程中,网络系统或产品未正确过滤其中的特殊元素。攻击者可利用该漏洞生成非法的代码段,修改网络系统或组件的预期的执行控制流。
CVSS Information
N/A
Vulnerability Type
N/A