OSV 1.4.0 · github-reviewed · 修改于 2022-09-15 05:59
发布时间
2018-11-01 22:47
GitHub 审查时间
2020-06-17 05:22
NVD 发布时间
—
源文件
advisories/github-reviewed/2018/11/GHSA-7hjp-97g3-rq93/GHSA-7hjp-97g3-rq93.json
An issue was discovered in com\mingsoft\cms\action\GeneraterAction.java in MCMS 4.6.5. An attacker can write a .jsp file (in the position parameter) to an arbitrary directory via a ../ Directory Traversal in the url parameter.