Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Deserialization of Untrusted Data in Gambio through 4.9.2.0 allows attackers to run arbitrary code via "search" parameter of the Parcelshopfinder/AddAddressBookEntry" function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gambio 代码问题漏洞
Vulnerability Description
Gambio是Gambio公司的一款一体化电子商务解决方案。 Gambio 4.9.2.0及之前版本存在代码问题漏洞,该漏洞源于系统包含不受信任数据的反序列化,允许攻击者通过 Parcelshopfinder/AddAddressBookEntry中的 search参数运行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A