Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in Nullsoft SHOUTcast DSP before 1.9.6 filters directory traversal sequences before decoding, which allows remote attackers to read arbitrary files via encoded dot dot (%2E%2E) sequences in an HTTP GET request for a file path containing "/content".
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Nullsoft SHOUTcast DSP "/content"的文件目录遍历漏洞
Vulnerability Description
Nullsoft SHOUTcast DSP 1.9.6之前版本存在目录遍历漏洞。该漏洞在解码之前过滤目录遍历序列,远程攻击者可以借助在含有"/content"的文件路径的HTTP GET 请求中编码的点点(%2E%2E) 序列,读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A