Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Admin Server in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to append to arbitrary new or existing files via the first argument to a certain file that is included by multiple unspecified ASP applications.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun Java ASP服务器 ASP应用捆绑文件输入验证漏洞
Vulnerability Description
Sun Java System Active Server Pages软件允许组织在各种web服务器和操作系统上部署基于ASP的web应用。 ASP 服务 4.0.3 之前的版本没有正确地验证对各种ASP应用所捆绑文件的输入便在函数中使用创建文件,这可能导致在系统上创建或附加任意文件。成功利用这个漏洞要求能够网络访问管理服务器(5100/TCP端口)。
CVSS Information
N/A
Vulnerability Type
N/A