Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An arbitrary file upload vulnerability in the component /workplace#!explorer of Alkacon OpenCMS v15.0 allows attackers to execute arbitrary code via uploading a crafted PNG file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Alkacon Software OpenCMS 跨站脚本漏洞
Vulnerability Description
Alkacon Software OpenCMS是德国Alkacon Software公司的一套开源的基于Java和XML的内容管理系统(CMS)。该系统支持模板引擎、所见即所得编辑器等。 Alkacon Software OpenCMS 15.0版本存在安全漏洞,该漏洞源于组件explorer存在任意文件上传漏洞。攻击者可利用该漏洞上传精心设计的PNG文件来执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A