Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the (1) WTHoster and (2) WebDriver modules in WildTangent Web Driver 4.0 allows remote attackers to execute arbitrary code via a long filename.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WildTangent WebDriver远程文件名缓冲区溢出漏洞
Vulnerability Description
WildTangent WebDriver可提供Internet上高质量交互媒体技术。 WildTangent WebDriver对文件名参数缺少充分缓冲区边界检查,远程攻击者可以利用这个漏洞以进程权限在系统上执行任意指令。 问题存在于WildTangent WebDriver的WTHoster和WebDriver模块中,这些模块可通过任意方法接收文件名作为参数,在把这个文件作为绝对路径处理时,会拼接预定义目录路径和文件名作为参数并没有任何检查提供给strcat()函数,这可导致发生缓冲区溢出,精心构建提
CVSS Information
N/A
Vulnerability Type
N/A