Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in php code execution in /admin/upload/upload.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tensent SentCMS 代码问题漏洞
Vulnerability Description
Tensent SentCMS是中国腾速科技(Tensent)公司的一款简单易用的网站管理系统。 Tensent SentCMS 4.0.x版本存在安全漏洞,该漏洞源于软件中的/admin/upload/upload php代码的文件上传接口缺少对于上传文件的验证。攻击者可以通过未经授权的文件利用该漏洞实现任意文件上传。
CVSS Information
N/A
Vulnerability Type
N/A