Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SchoolCMS version 2.3.1 allows file upload via the theme upload feature at admin.php?m=admin&c=theme&a=upload by using the .zip extension along with the _Static substring, changing the Content-Type to application/zip, and placing PHP code after the ZIP header. This ultimately allows execution of arbitrary PHP code in Public\Home\1_Static.php because of mishandling in the Application\Admin\Controller\ThemeController.class.php Upload() function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SchoolCMS 安全漏洞
Vulnerability Description
SchoolCMS是一套基于ThinkPHP框架的开源学校教务管理系统。该系统包括学生管理、成绩管理和教师管理等。 SchoolCMS 2.3.1版本中的主题上传功能存在安全漏洞。攻击者可通过使用带有 _Static子字符串的.zi扩展名,将Content-Type更改成application/zip并在ZIP文件头之后放入PHP代码利用该漏洞执行任意的PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A