Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
idreamsoft iCMS 7.0.13 allows admincp.php?app=files ../ Directory Traversal via the udir parameter to files.admincp.php, resulting in execution of arbitrary PHP code from a ZIP file via the admincp.php?app=apps zipfile parameter to apps.admincp.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
idreamsoft iCMS 路径遍历漏洞
Vulnerability Description
idreamsoft iCMS是一套基于PHP和MySQL的开源内容管理系统(CMS)。 idreamsoft iCMS 7.0.13版本中存在安全漏洞。攻击者可借助‘udir’和‘zipfile’参数利用该漏洞执行ZIP文件中的任意PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A