Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple open redirect vulnerabilities in AIST NetCat 3.12 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via (1) the redirect parameter in a logoff action to modules/auth/index.php or (2) the url parameter to modules/linkmanager/redirect.php. NOTE: this was reported within an "HTTP Response Splitting" section in the original disclosure.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AIST Netcat 重定向网站钓鱼漏洞
Vulnerability Description
Netcat 是一款简单的Unix工具,使用UDP和TCP协议。 它是一个可靠的容易被其他程序所启用的后台操作工具,同时它也被用作网络的测试工具或黑客工具。 AIST NetCat 3.12 及其早期版本中存在多个开放重定向漏洞。远程攻击者可以借助(1)一个对modules/auth/index.php的logoff操作地重定向参数或(2)对modules/linkmanager/redirect.php的url参数,来重新定向用户至任意网站地址并执行钓鱼攻击。
CVSS Information
N/A
Vulnerability Type
N/A