Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ClassCMS v4.8 has a code execution vulnerability. Attackers can exploit this vulnerability by constructing a payload in the classview parameter of the model management feature, allowing them to execute arbitrary code and potentially take control of the server.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ClassCMS 安全漏洞
Vulnerability Description
ClassCMS是中国ClassCMS开源的一款简单、灵活、安全、易于拓展的内容管理系统。 ClassCMS 4.8版本存在安全漏洞,该漏洞源于代码执行漏洞,允许攻击者通过模型管理功能的classview参数构造payload执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A