Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in the FTP server in TriDComm 1.3 and earlier allows remote attackers to read or write arbitrary files via a .. (dot dot) in FTP commands such as (1) DIR, (2) GET, or (3) PUT.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tridcomm 1.3远程目录遍历漏洞
Vulnerability Description
Tridcomm是一款开源3D文件管理器,内置FTP服务程序,不过默认不打开。 Tridcomm内置FTP服务程序没有正确处理用户提交的命令参数,远程攻击者可以利用这个漏洞以进程权限查看文件内容。 提交包含多个'../'字串的数据,可导致绕过WEB ROOT限制,以进程权限查看文件内容。
CVSS Information
N/A
Vulnerability Type
N/A