Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple directory traversal vulnerabilities in the (a) "Unzip archive" and (b) "Upload files and archives" functionality in net2ftp 0.96 stable and 0.97 beta allow remote attackers to create, read, or delete arbitrary files via a .. (dot dot) in a filename within a (1) TAR or (2) ZIP archive. NOTE: this can be leveraged for code execution by creating a .php file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
net2ftp FTP Client Request Handling 多个目录遍历漏洞
Vulnerability Description
net2ftp是一款实现基于Web方式的免费的FTP客户端程序。 net2ftp的"Unzip存档文件"和"上传文件与存档文件"功能中存在多个目录遍历漏洞。远程攻击者可以借助在一个TAR或ZIP存档文件中的文件名的一个..,创建,读取或删除任意文件。
CVSS Information
N/A
Vulnerability Type
N/A