Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Webiness Inventory 2.3. The ProductModel component allows Arbitrary File Upload via a crafted product image during the creation of a new product. Consequently, an attacker can steal information from the site with the help of an installed executable file, or change the contents of pages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Webiness Inventory 代码问题漏洞
Vulnerability Description
Webiness Inventory是一套使用PHP语言开源的、基于Web的库存管理系统。 Webiness Inventory 2.3版本中存在任意文件上传漏洞。攻击者可利用该漏洞上传任意文件。
CVSS Information
N/A
Vulnerability Type
N/A