Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the get_string_ahref function for ProZilla 1.3.7.4 and possibly earlier, with the -ftpsearch option enabled, allows remote servers to execute arbitrary code via a search response with a crafted string in the HREF field of an <A> tag.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ProZilla 缓冲区溢出漏洞
Vulnerability Description
prozilla是一个包括text模式及图形模式的下载工具,支持多线程下载,可以增加200%到300%的下载速度。 ProZilla 1.3.7.4及可能的早期版本的get_string_ahref函数在启用 -ftpsearch选项时存在缓冲区溢出。远程攻击者可以借助<A>标签的HREF字段中含有特制字符串的检索响应,执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A