Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in view_item CGI program in sglMerchant 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the HTML_FILE parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SeaGlass Technologies sglMerchant 目录遍历漏洞
Vulnerability Description
CVE(CAN) ID: CAN-2001-1019 SeaGlass Technologies sglMerchant是一套商业应用软件。 它的某些CGI程序没有正确检查用户输入数据中是否包含../以及空字符,如果攻击者在URL 请求中包含这些特殊字符,就可以进行目录遍历,攻击者以CGI运行身份查看web根目录之 外的任意文件。
CVSS Information
N/A
Vulnerability Type
N/A