在 PbootCMS 3.2.24 及更早版本中检测到一处安全漏洞。该漏洞影响 文件中用户管理组件的 和 函数。此类操作可能导致跨站请求伪造(CSRF)。攻击可远程实施。该漏洞的利用方法已公开披露,可能被实际利用。升级到版本 3.2.25 可以解决此问题。补丁标识符为 c25241a0964742cefb7f698efbb6c38b868d6ff7。建议升级受影响组件至安全版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | PbootCMS | 3.2.0 |
cpe:2.3:a:pbootcms:pbootcms:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-92399 | 7.3 HIGH | GPAC WebSocket rmt_ws.c rmt_client_handle_ws_frame heap-based overflow |
| CVE-2026-92380 | 7.3 HIGH | WuzhiCMS Remote Image Fetch index.php saveRemote server-side request forgery |
| CVE-2026-92416 | 4.3 MEDIUM | Open5GS PFCP Session Report Request n4-handler.c smf_n4_handle_session_report_request asse |
| CVE-2026-92381 | 3.5 LOW | PbootCMS Template Rendering ContentController.php decode_string cross site scripting |
| CVE-2026-51990 | 搜狗输入法16.3.0.3498前任意代码执行漏洞 | |
| CVE-2026-88593 | CVE-2026-88593 |
No comments yet