Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Kooboo CMS 2.1.1.0 is vulnerable to Insecure file upload. It is possible to upload any file extension to the server. The server does not verify the extension of the file and the tester was able to upload an aspx to the server.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Kooboo代码问题漏洞
Vulnerability Description
Kooboo是一种新型的 Web 开发工具,能够开发静态页面或复杂的网站。 Kooboo CMS 2.1.1.0 存在安全漏洞,该漏洞源于软件对于用户上传的文件缺乏有效的验证和过滤。攻击者可以将任何文件扩展名上传到服务器然而服务器并不验证文件的扩展名。
CVSS Information
N/A
Vulnerability Type
N/A