Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in HTTP requests to unspecified ASP applications.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sun Java ASP服务器 ASP应用输入任意命令执行漏洞
Vulnerability Description
Sun Java System Active Server Pages软件允许组织在各种web服务器和操作系统上部署基于ASP的web应用。 ASP 服务 4.0.3 之前的版本没有正确过滤对ASP应用的输入便用于执行shell命令,允许恶意用户通过包含有shell元字符的HTTP请求注入并执行任意shell命令。成功利用这个漏洞要求能够通过认证访问管理服务器。
CVSS Information
N/A
Vulnerability Type
N/A