在北京美特软件科技公司的 U+Smart Enjoyment 网站 18.6001.1096.1000 版本中确认存在一个漏洞。该漏洞影响文件 /Report/Upload/UploadFormImg.ashx 中的某个未知功能。通过操纵参数 File 可导致不受限制的文件上传。该漏洞可被远程利用,且已有公开披露的利用方法。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Beijing Meite Software Technology | U+Smart Enjoyment WebSite | 18.6001.1096.1000 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Beijing Meite Software Technology | U+Smart Enjoyment WebSite | 18.6001.1096.1000 |
cpe:2.3:a:beijing_meite_software_technology:u_smart_enjoyment_website:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet