Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CGIScript.net csPassword.cgi allows remote authenticated users to modify the .htaccess file and gain privileges via newlines in the title field of the edit page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CGIScript.net csPassword.CGI htaccess文件修改漏洞
Vulnerability Description
CGIScript.net是由Mike Barone和Andy Angrick维护的WEB管理员相关的工具。 CGIScript.net中的csPassword.cgi脚本存在漏洞,可导致远程攻击者插入指示修改.htaccss文件。 任意能登录访问csPassword程序的用户,可以插入额外指示到.htaccess文件中,允许攻击者进行重定向通信,设置脚本等操作,插入操作可以通过在编辑页上的标题字段增加换行符和额外字符来完成。
CVSS Information
N/A
Vulnerability Type
N/A