admin3 至 3.0.0 版本在上传处理程序中对客户端提供的文件名缺乏有效过滤,使得已认证用户能够在 Windows 部署环境中将文件写入存储根目录之外。攻击者可以利用文件名中的“点-点”(dot-dot,即 )路径片段,从而跳出配置的存储目录,覆盖服务器进程可访问的任意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-92918 | 8.8 HIGH | admin3 through 3.0.0 Session Token Disclosure via Audit Log |
| CVE-2026-92920 | 5.4 MEDIUM | admin3 through 3.0.0 Session Not Invalidated When a User Account Is Disabled |
| CVE-2026-92921 | 4.9 MEDIUM | admin3 through 3.0.0 Weak Password Hashing via Single-Round MD5 |
No comments yet