漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
RCE in Laragon
Vulnerability Description
Enabling Simple Ajax Uploader plugin included in Laragon open-source software allows for a remote code execution (RCE) attack via an improper input validation in a file_upload.php file which serves as an example. By default, Laragon is not vulnerable until a user decides to use the aforementioned plugin.
CVSS Information
N/A
Vulnerability Type
危险类型文件的不加限制上传
Vulnerability Title
Laragon 安全漏洞
Vulnerability Description
Laragon是一个可移植、隔离、快速且强大的通用开发环境,适用于 PHP、Node.js、Python、Java、Go、Ruby。 Laragon存在安全漏洞,该漏洞源于不正确的输入验证,攻击者利用该漏洞可以远程执行代码(RCE)。
CVSS Information
N/A
Vulnerability Type
N/A