织梦(DEDE)CMS V5.3 覆盖任意变量导致远程包含漏洞

Basic Fields

SSV ID:
SSV-26136
Find Time:
Unknown
Submit Time:
2011-12-31
Level:
Category:
远程文件包含
Component:
DedeCMS
Author:
Unknown
Submitter:
Knownsec
CVE-ID:
Add
CNNVD-ID:
Add
CNVD-ID:
Add
ZoomEye Dork:
Add

Source

Detail

Contributor Knownsec Got  0.15KB
Loading icon
jax777 niunaijidan have 2  exchange

PoC (非 pocsuite 插件)

Contributor Knownsec totally have   0.35KB

jax777 niunaijidan have 6 Exchange

Reference Linking

Solutions

Temp Solutions

Official Solution

Defense Solutions

Popularity 2249
Need to bind phone before comment. Bind Now

Unavailable Comments

※Any content provided by this site, only to learn the code and services, not for illegal purposes