Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-1680: CMS-bug/Informationdisclosure-1.md at main · 2714925725/CMS-bug

A vulnerability, which was classified as problematic, has been found in Xunrui CMS 4.61. This issue affects some unknown processing of the file /dayrui/My/View/main.html. The manipulation leads to information disclosure. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-224237 was assigned to this vulnerability.

CVE
#vulnerability#php#auth

Permalink

1 contributor

Users who have contributed to this file

BUG_Author:mengleng

Vulnerability File: /dayrui/My/View/main.html

Vulnerability File: /config/myfield/test.php

Vulnerability File: /dayrui/My/Config/Install.txt

Vulnerability File: /dayrui/Fcms/View/system_log.html

There is information leakage in the above path

payload1:/dayrui/My/View/main.html

payload2:/config/myfield/test.php

payload3:/dayrui/My/Config/Install.txt

payload4:/dayrui/Fcms/View/system_log.html

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907