Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Roxen web server earlier than 2.0.69 allows allows remote attackers to bypass access restrictions, list directory contents, and read source code by inserting a null character (%00) to the URL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Roxen WebServer %00请求泄漏文件内容、目录列表漏洞
Vulnerability Description
Roxen WebServer是一个运行的Unix类平台上的Web服务器程序。 发现Roxen WebServer存在一个安全问题,可能会暴露CGI文件内容以及目录列表。 Roxen WebServer 对于以%00结尾的Web请求不能正确的处理,对于一个针对文件的请求,服务器会返回文件的内容,而不论该文件是否是CGI脚本;对于一个针对目录的请求,服务器会返回目录列表,不论该目录是否允许列文件。
CVSS Information
N/A
Vulnerability Type
N/A