Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Sambar web server before 5.2 beta 1 allows remote attackers to obtain source code of server-side scripts, or cause a denial of service (resource exhaustion) via DOS devices, using a URL that ends with a space and a null character.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sambar WEB服务程序服务端文件解析可绕过漏洞
Vulnerability Description
Sambar Webserver是一款多线程的 HTTP 服务器,可使用于Windows、Unix、Linux操作系统下。 Sambar Webserver在服务端URL解析处理中存在漏洞,远程攻击者可以获得请求文件源代码信息。 攻击者可以向Sambar Webserver提交任何文件请求并在文件名后追加空格和NULL字符,可以导致Sambar Webserver返回包含请求文件源代码信息,可能导致密码等敏感的信息泄露。 攻击者同样可以请求DOS设备名进行拒绝服务攻击。
CVSS Information
N/A
Vulnerability Type
N/A