Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Server-Side Request Forgery (SSRF) vulnerability exists in the AnnounContent of the /admin/read.php in OTCMS V7.66 and before. The vulnerability allows remote attackers to craft HTTP requests, without authentication, containing a URL pointing to internal services or any remote server
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
OTCMS 安全漏洞
Vulnerability Description
OTCMS(网钛CMS)是网钛(OTCMS)公司的一套文章类网站内容管理系统(CMS)。 OTCMS V7.66及之前版本存在安全漏洞,该漏洞源于/admin/read.php中的AnnounContent存在服务端请求伪造,可能导致远程攻击者在未经身份验证的情况下构造指向内部服务或任何远程服务器的HTTP请求。
CVSS Information
N/A
Vulnerability Type
N/A