Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Wcms 0.3.2, an attacker can send a crafted request from a vulnerable web application backend server /wcms/wex/html.php via the finish parameter and the textAreaCode parameter. It can write arbitrary strings into custom file names and upload any files, and write malicious code to execute scripts to trigger command execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WCMS 代码问题漏洞
Vulnerability Description
WCMS是一套内容管理系统(CMS)。 WCMS 0.3.2版本存在安全漏洞。攻击者利用该漏洞可以将任意字符串写入自定义文件名并上传任意文件,也可以编写恶意代码执行脚本触发命令执行。
CVSS Information
N/A
Vulnerability Type
N/A