Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
WSSecurity.pl in WebStore allows remote attackers to bypass authentication by providing the program with a filename that exists, which is made easier by (1) inserting a null character or (2) .. (dot dot).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
cgiCentral Webstore管理员认证绕过漏洞
Vulnerability Description
CVE(CAN) ID: CAN-2001-1344 cgiCentral Webstore是一个在线购物程序,由于没有过滤用户输入的"../"和 "null"字符,导致用户可能绕过管理员认证,直接成为该系统的管理员。
CVSS Information
N/A
Vulnerability Type
N/A