Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in Digicraft Yak! server 2.0 through 2.1.2 allows remote attackers to read or write arbitrary files via "../" or "..\" sequences in commands such as (1) dir or (2) put.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Yak!远程目录遍历漏洞
Vulnerability Description
Yak!是一款聊天程序并可交换文件。 Yak!内置的FTP服务程序对上传功能处理不正确,远程攻击者可以利用这个漏洞进行目录遍历攻击。 内置的FTP服务程序对用户提交的命令缺少充分过滤,提交包含多个'../'字符的数据,可绕过目录限制,利用上传功能可以覆盖系统任意文件,造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A