References https://zhuanlan.zhihu.com/p/717641991 https://www.cnblogs.com/anquankeyinyang/articles/15519326.html https://www.cnblogs.com/qianxiao996/p/13574601.html https://txluck.github.io/2021/10/26/yccms%E5%AE%A1%E8%AE%A1/ https://www.cnblogs.com/chuanchu/p/19042847 https://cn-sec.com/archives/1720673.html https://cn-sec.com/archives/710076.html https://www.techug.com/post/php-file_exists-problem/
Related VulnerabilitiesPoCCVE-2026-42018: JFrog Artifactory - Anonymous Token Disclosure via Trailing Slash Auth BypassPoCCVE-2026-82329: JFrog Artifactory Access Blank Join Key Authentication BypassPoCjfrog-artifactory-build-exposure: JFrog Artifactory Build - ExposurePoCjfrog-artifactory-exposure: JFrog Artifactory Artifacts Exposuredillinger /factory/fetch_pdf 命令执行漏洞yccms-rce: YcCMS RCE金蝶天燕 /ormrpc/services/ServiceFactoryService 命令执行漏洞PoCCVE-2010-1955: Joomla! Component Deluxe Blog Factory 1.1.2 - Local File InclusionPoCCVE-2010-1956: Joomla! Component Gadget Factory 1.0.0 - Local File InclusionPoCCVE-2010-1957: Joomla! Component Love Factory 1.3.4 - Local File InclusionPoCCVE-2019-17444: Jfrog Artifactory <6.17.0 - Default Admin Password