4Images 1.7.6 Local Inclusion Vulnerability

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

Bug file : global.php if (isset($HTTP_GET_VARS['l']) || isset($HTTP_POST_VARS['l'])) { $requested_l = (isset($HTTP_GET_VARS['l'])) ? trim($HTTP_GET_VARS['l']) : trim($HTTP_POST_VARS['l']); if ($requested_l != $config['language_dir'] && file_exists(ROOT_PATH.'lang/'.$requested_l.'/main.php')) { $l = $requested_l; $config['language_dir'] = $l; } } include_once(ROOT_PATH.'lang/'.$config['language_dir'].'/main.php'); 4Images 1.7.6 暂无

0%
暂无可用Exp或PoC
当前有0条受影响产品信息