Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An arbitrary file upload vulnerability in the UI login page logo upload function of Process Maker pm4core-docker 4.1.21-RC7 allows attackers to execute arbitrary code via uploading a crafted PHP or HTML file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ProcessMaker 安全漏洞
Vulnerability Description
ProcessMaker是美国ProcessMaker公司的一个Php编写的用于商业进程管理(BPM)和工作流管理的建站系统。 ProcessMaker pm4core-docker 4.1.21-RC7版本存在安全漏洞,该漏洞源于UI登录页面logo上传功能存在任意文件上传漏洞,攻击者可通过上传特制的 PHP 或 HTML 文件执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A