Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in download.php in Academic Web Tools (AWT YEKTA) 1.4.3.1, and 1.4.2.8 and earlier, allows remote attackers to read arbitrary files via a .. (dot dot) in the dfile parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Academic Web Tools CMS 目录遍历漏洞
Vulnerability Description
Academic Web tools 是一款基于web的校园管理系统工具。 Academic Web Tools (AWT YEKTA) 1.4.3.1, 和 1.4.2.8 及其早期版本的download.php中存在目录遍历漏洞, 远程攻击者通过dfile参数中的一个.. (dot dot)来读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A