Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
logwebftbs2000.exe in Logics Software File Transfer (LOG-FT) allows remote attackers to read arbitrary files via modified (1) VAR_FT_LANG and (2) VAR_FT_TMPL parameters.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Logics Software LOG-FT远程文件泄露漏洞
Vulnerability Description
LOG-FT处理用户请求时存在输入验证漏洞,远程攻击者可能利用此漏洞非授权访问系统文件。LOG-FT的logwebftbs2000.exe程序没有正确检查过滤HTTP GET请求中的用户参数,远程攻击者可以通过直接指定系统文件的路径和文件名非授权访问到这些敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A