漏洞描述 74CMS人才招聘系统/upload/application/index/controller/Download.php文件任意文件读取漏洞,可读取系统配置等文件,导致网站处于极度不安全状态。
相关漏洞推荐 CVE-2020-22209: 74cms - ajax_common.php SQL Injection POC 2025-09-01 | 74cms SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php. FOFA: app="74cms&... CVE-2020-22210: 74cms - ajax_officebuilding.php SQL Injection POC 2025-09-01 | 74cms A SQL injection vulnerability exists in 74cms 3.2.0 via the x parameter to ajax_officebuilding.php. ... CVE-2020-22211: 74cms - ajax_street.php 'key' SQL Injection POC 2025-09-01 | 74cms SQL Injection in 74cms 3.2.0 via the key parameter to plus/ajax_street.php. FOFA: app="74cms&qu... Webmin /package-updates/update.cgi 命令执行漏洞(CVE-2022-36446) 无POC 2025-09-05 | Webmin Webmin是Webmin社区的一套基于Web的用于类Unix操作系统中的系统管理工具。 Webmin 1.997之前的版本存在安全漏洞,该漏洞源于其software/apt-lib.pl组件缺少对U... CVE-2022-0342: Zyxel authentication bypass patch analysis POC 2025-09-01 | Zyxel An authentication bypass vulnerability in the CGI program of Zyxel USG/ZyWALL series firmware versio...