Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
app\modules\polygon\controllers\ProblemController in Jiangnan Online Judge (aka jnoj) 0.8.0 allows arbitrary file upload, as demonstrated by PHP code (with a .php filename but the image/png content type) to the web/polygon/problem/tests URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Jiangnan Online Judge 代码问题漏洞
Vulnerability Description
Jiangnan Online Judge是一套用于计算机编程的在线评测系统。该系统主要用于对用户提交的源代码进行编译和执行,并检验程序源代码的正确性。 Jiangnan Online Judge 0.8.0版本中的appmodulespolygoncontrollersProblemController存在安全漏洞。攻击者可利用该漏洞上传任意文件。
CVSS Information
N/A
Vulnerability Type
N/A