Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue in PublicCMS v.4.0.202302.e allows a remote attacker to obtain sensitive information via the appToken and Parameters parameter of the api/method/getHtml component.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
PublicCMS 安全漏洞
Vulnerability Description
PublicCMS是中国PublicCMS公司的一套使用Java语言编写的开源内容管理系统(CMS)。 PublicCMS v.4.0.202302.e版本存在安全漏洞,该漏洞源于存在服务器请求伪造(SSRF)漏洞。攻击者可利用该漏洞通过api/method/getHtml组件的appToken和Parameters参数获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A