Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Local File Inclusion in Axiell Iguana CMS
Vulnerability Description
A Local File Inclusion vulnerability has been found in Axiell Iguana CMS. Due to insufficient neutralisation of user input on the url parameter on the Proxy.type.php endpoint, external users are capable of accessing files on the server.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
对外部实体的文件或目录可访问
Vulnerability Title
Axiell Iguana CMS 安全漏洞
Vulnerability Description
Axiell Iguana CMS是Axiell公司的一个基于控件的平台。用于个性化和与客户沟通。 Axiell Iguana CMS存在安全漏洞,该漏洞源于imageProxy.type.php上url参数的输入错误。攻击者利用该漏洞能够访问服务器上的文件。
CVSS Information
N/A
Vulnerability Type
N/A