Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
BRS WebWeaver Web Server 1.01 allows remote attackers to bypass password protections for files and directories via an HTTP request containing a "/./" sequence.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
BRS WebWeaver Web Server可绕过访问限制漏洞
Vulnerability Description
BRS WebWeaver是小型快速的HTTP和FTP服务器程序,提供目录保护功能,适用于Windows 9xNT操作系统。 BRS WebWeaver目录保护机制存在问题,远程攻击者可以利用这个漏洞构建恶意WEB请求绕过密码保护访问受限文件。 攻击者在请求目录名前提交"./"字符,可导致绕过密码保护,未授权访问wwwroot子目录下的密码保护的敏感文件。
CVSS Information
N/A
Vulnerability Type
N/A