漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
漏洞
N/A
漏洞信息
An issue was discovered in Squiz Matrix CMS 5.5.0 prior to 5.5.0.3, 5.5.1 prior to 5.5.1.8, 5.5.2 prior to 5.5.2.4, and 5.5.3 prior to 5.5.3.3 where a user can trigger arbitrary unserialization of a PHP object from a packages/cms/page_templates/page_remote_content/page_remote_content.inc POST parameter during processing of a Remote Content page type. This unserialization can be used to trigger the inclusion of arbitrary files on the filesystem (local file inclusion), and results in remote code execution.
漏洞信息
N/A
漏洞
N/A
漏洞
Squiz Matrix CMS 代码问题漏洞
漏洞信息
Squiz Matrix CMS中的/cms/page_templates/page_remote_content/page_remote_content.inc文件存在代码问题漏洞。远程攻击者可借助‘page_remote_content_[pageid]_sq_remote_input_file_names’参数利用该漏洞在系统上执行任意代码。以下产品及版本受到影响:Squiz Matrix CMS 5.5.0.3之前的5.5.0版本,5.5.1.8之前的5.5.1版本,5.5.2.4之前的5.5.2
漏洞信息
N/A
漏洞
N/A