Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Code injection in pluginconfig.php in Image Uploader and Browser for CKEditor before 4.1.9 allows remote authenticated users to execute arbitrary PHP code.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CKEditor Image Uploader and Browser 输入验证错误漏洞
Vulnerability Description
CKEditor是一套开源的、基于网页的文字编辑器。Image Uploader and Browser是其中的一个图片上传和下载插件。 Image Uploader and Browser 4.1.9之前版本(用于CKEditor)中的pluginconfig.php文件存在输入验证错误漏洞,该漏洞源于程序没有正确处理路径中特制的字符。远程攻击者可利用该漏洞执行任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A