Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
File Upload vulnerability in JIZHICMS v.2.5, allows remote attacker to execute arbitrary code via a crafted file uploaded and downloaded to the download_url parameter in the app/admin/exts/ directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
JIZHICMS 安全漏洞
Vulnerability Description
极致网络科技 JIZHICMS(极致CMS)是中国极致网络科技公司的一套开源的内容管理系统(CMS)。 JIZHICMS v.2.5版本存在安全漏洞,该漏洞源于存在文件上传漏洞。攻击者可利用该漏洞通过app/admin/exts/目录中的download_url参数执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A