Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ExpressionEngine before 5.4.2 and 6.x before 6.0.3 allows PHP Code Injection by certain authenticated users who can leverage Translate::save() to write to an _lang.php file under the system/user/language directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PACKET TIDE ExpressionEngine 代码注入漏洞
Vulnerability Description
Packet Tide ExpressionEngine是美国Packet Tide公司的一套开源的内容管理系统(CMS)。 ExpressionEngine 5.4.2之前版本和6.0.3之前版本 存在代码注入漏洞,该漏洞允许某些经过身份验证的用户注入PHP代码。
CVSS Information
N/A
Vulnerability Type
N/A