Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Bandersnatch 0.4 allows remote attackers to obtain sensitive information via a malformed request for index.php with (1) a certain func parameter value; or (2) certain func, jid, page, and limit parameter values; which reveals the path in various error messages.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bandersnatch index.php 输入验证漏洞
Vulnerability Description
Bandersnatch存在输入验证漏洞。远程攻击者可以借助对index.php的一个畸形的请求获得敏感信息,该问题是发生在(1)一个特定func 参数值;或(2)特定func, jid, page,以及limit参数值;这一问题显示错误路径信息。
CVSS Information
N/A
Vulnerability Type
N/A