Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Craft CMS before 3.6.7. In some circumstances, a potential Remote Code Execution vulnerability existed on sites that did not restrict administrative changes (if an attacker were somehow able to hijack an administrator's session).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pixel&tonic Craft CMS 代码注入漏洞
Vulnerability Description
Pixel&tonic Craft CMS是美国Pixel&Tonic(Pixel&tonic)公司的一套内容管理系统(CMS)。 Craft CMS在3.6.7之前存在代码注入漏洞,该漏洞源于在某些情况下,不限制管理更改的站点上存在一个潜在的远程代码执行漏洞(如果攻击者可利用该漏洞能够以某种方式劫持管理员的会话)。
CVSS Information
N/A
Vulnerability Type
N/A