Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
my.activation.php3 in F5 FirePass 4100 SSL VPN allows remote attackers to execute arbitrary shell commands via shell metacharacters in the username parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
F5 FirePass my.activation.php3文件任意命令注入漏洞
Vulnerability Description
F5 FirePass SSL VPN设备允许用户安全的连接到关键业务应用设备上。 F5 FirePass SSL VPN设备在处理用户请求数据时存在输入验证漏洞,远程攻击者可能利用此漏洞在设备上执行任意命令。 F5 FirePass SSL VPN设备中的my.activation.php3文件没有正确验证username输入,允许用户通过提交恶意的登录请求注入Linux的shell命令,在设备上执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A