moonfor

Results 3 issues of moonfor

详细利用过程参考 https://github.com/moonfor/CVE_Q/blob/main/svnwebui/%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E5%88%A0%E9%99%A4%2B%E8%AF%BB%E5%8F%96.md

There is an unauthorized access vulnerability http://127.0.0.1:8888/zhglxt/cms/article ![image](https://github.com/user-attachments/assets/85cd8ca0-3cfa-4104-8350-2b8be8f2ac27)

发现项目存在两个安全漏洞,望知悉,参考文章链接如下: 1.后台存在sql注入漏洞,需登录 https://github.com/moonfor/CVE_Q/blob/main/MetaLowCode/%E5%90%8E%E5%8F%B0sql%E6%B3%A8%E5%85%A5.md 2.存在url重定向漏洞,无需登录 https://github.com/moonfor/CVE_Q/blob/main/MetaLowCode/url%E9%87%8D%E5%AE%9A%E5%90%91.md