Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Falcon web server 2.0.0.1021 and earlier allows remote attackers to bypass access restrictions for protected files via a URL whose directory portion ends in a . (dot).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BlueFace Falcon Web Server可绕过对文件的口令保护漏洞
Vulnerability Description
Falcon Web Server是一款小型的Web服务程序,可使用在Microsoft Windows操作系统下。 Falcon Web Server的文件保护机制存在漏洞,可导致远程攻击者未授权访问受口令保护的文件。 攻击者在知道受保护文件名和路径的情况下,提交包含'./'字符的URL请求,绕过受口令保护文件的安全机制,无需认证获得文件内容,造成敏感信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A