Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
mojoPortal v2.7 was discovered to contain a path traversal vulnerability via the "f" parameter at /DesignTools/CssEditor.aspx. This vulnerability allows authenticated attackers to read arbitrary files in the system.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
mojoPortal 路径遍历漏洞
Vulnerability Description
mojoPortal是美国Joe Audette个人开发者的一套开源的、面向对象的网站架构(WSF)和内容管理系统(CMS)。该系统提供事件日历、相册、文件管理器等。 mojoPortal v2.7版本存在路径遍历漏洞,该漏洞源于通过/DesignTools/CssEditor.aspx的参数存在路径遍历漏洞,该漏洞允许认证的攻击者在系统中读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A