CVE-2018-17827

CVE-2018-17827

HisiPHP 1.0.8 allows remote attackers to execute arbitrary PHP code by editing a plugin’s name to contain that code. This name is then injected into app/admin/model/AdminPlugins.php.

Source: CVE-2018-17827

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다