漏洞标题
OTCMS 用户新闻交易.php 路径遍历
漏洞描述信息
OTCMS用户News_deal.php路径遍历
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
漏洞类别
对路径名的限制不恰当(路径遍历)
漏洞标题
OTCMS usersNews_deal.php path traversal
漏洞描述信息
A vulnerability has been found in OTCMS up to 6.62 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file usersNews_deal.php. The manipulation of the argument file leads to path traversal: '../filedir'. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-231511.
CVSS信息
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
漏洞类别
路径遍历:’../filedir’
漏洞标题
OTCMS 安全漏洞
漏洞描述信息
OTCMS(网钛CMS)是一套文章类网站内容管理系统(CMS)。 OTCMS 6.62之前版本存在安全漏洞,该漏洞源于对参数file的错误操作导致路径遍历。
CVSS信息
N/A
漏洞类别
其他