Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in Un-CGI 1.9 and earlier allows remote attackers to execute arbitrary code via a .. (dot dot) in an HTML form.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Steve Grimm Un-CGI 目录遍历漏洞
Vulnerability Description
CVE(CAN) ID: CAN-2001-1242 Un-CGI是种免费CGI封装应用程序。其主要用于解析URL输入并提交给CGI应用程序, 可以库方式使用,也可以单独执行。但是它没有过滤用户输入中的"../"序列,远程 用户可以访问WEB SERVER所能访问的任意文件。该漏洞还可用于远程执行其他脚本。 <* 来源:Khamba Staring (purrcat@edoropolis.org) *>
CVSS Information
N/A
Vulnerability Type
N/A