漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
HTMLy CMS 3.1.1 Path Traversal via oldfile Parameter in Autosave
Vulnerability Description
HTMLy CMS through 3.1.1 contains a path traversal vulnerability that allows low-privileged authenticated attackers to relocate arbitrary files by supplying directory traversal sequences in the oldfile parameter at the admin autosave endpoint. Attackers can pass unsanitized traversal sequences directly to file_exists() and rename() functions in admin.php without canonicalization or directory boundary enforcement to cause unintended relocation of any file writable by the web server process to an attacker-specified draft location.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Vulnerability Title
HTMLy CMS 路径遍历漏洞
Vulnerability Description
HTMLy HTMLy CMS是HTMLy组织的一个内容管理系统。 HTMLy CMS 3.1.1及之前版本存在路径遍历漏洞,该漏洞源于路径遍历,可能导致低权限攻击者在admin autosave端点的oldfile参数中传入目录遍历序列,将未清理的遍历序列直接传递给admin.php中的file_exists()和rename()函数,未进行规范化或目录边界强制,导致任意文件被重定位到攻击者指定的草稿位置。
CVSS Information
N/A
Vulnerability Type
N/A