Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue in Mojoportal v2.7.0.0 and below allows an authenticated attacker to list all css files inside the root path of the webserver via manipulation of the "s" parameter in /DesignTools/ManageSkin.aspx
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
mojoPortal 路径遍历漏洞
Vulnerability Description
mojoPortal是美国Joe Audette个人开发者的一套开源的、面向对象的网站架构(WSF)和内容管理系统(CMS)。该系统提供事件日历、相册、文件管理器等。 mojoPortal v2.7.0.0及之前版本存在安全漏洞,该漏洞源于允许经过身份验证的攻击者通过操纵/DesignTools/ManageSkin.aspx中的s参数列出网络服务器根路径内的所有css文件。
CVSS Information
N/A
Vulnerability Type
N/A