Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
login.pl in SQL-Ledger before 2.6.21 and LedgerSMB before 1.1.5 allows remote attackers to execute arbitrary Perl code via the "-e" flag in the script parameter, which is used as an argument to the perl program.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SQL-Ledger和LedgerSMB 'login.pl'未明代码执行漏洞
Vulnerability Description
SQL-Ledger的2.6.21之前版本和LedgerSMB的1.1.5之前版本中的login.pl存在代码注入漏洞。远程攻击者可以通过在script参数内的"-e"标记(作为perl程序的自变量)来执行任意Perl代码。
CVSS Information
N/A
Vulnerability Type
N/A