Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
PHPMyWind 5.6 is vulnerable to Remote Code Execution. Becase input is filtered without "<, >, ?, =, `,...." In WriteConfig() function, an attacker can inject php code to /include/config.cache.php file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PHPMyWind 代码注入漏洞
Vulnerability Description
PHPMyWind是一套基于PHP和MySQL并符合W3C标准的企业网站建设解决方案。 PHPMyWind 5.6版本存在代码注入漏洞,攻击者可以将php代码注入"/include/config.cache.php"文件来触发漏洞。
CVSS Information
N/A
Vulnerability Type
N/A