Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
lighttpd before 1.4.20 compares URIs to patterns in the (1) url.redirect and (2) url.rewrite configuration settings before performing URL decoding, which might allow remote attackers to bypass intended access restrictions, and obtain sensitive information or possibly modify data.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Lighttpd URI Rewrite/Redirect 信息泄露漏洞
Vulnerability Description
lighttpd在执行URL解码前比较URIs模式rul.redirect和url.rewrite配置设置,这可能会引起远程攻击者绕过预设的访问限制,获得敏感信息或修改数据。
CVSS Information
N/A
Vulnerability Type
N/A