Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
anlgform.pl in Analog before 5.23 does not restrict access to the PROGRESSFREQ progress update command, which allows remote attackers to cause a denial of service (disk consumption) by using the command to report updates more frequently and fill the web server error log.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Analog anlgform.pl服务拒绝漏洞
Vulnerability Description
Analog 5.23之前版本的anlgform.pl不限制PROGRESSFREQ发展更新命令的使用权,远程攻击者可以通过使用该命令以更频繁地报告更新以及填写web服务器的出错记录来导致服务拒绝(磁盘消耗)。
CVSS Information
N/A
Vulnerability Type
N/A