Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
index.php in Terracotta (aka OpenTerracotta) 0.6.1 allows remote attackers to obtain sensitive information via an invalid File parameter, which reveals the installation path in an error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Devraj Mukherjee Open Terracotta ’index.php’输入验证错误漏洞
Vulnerability Description
Terracotta (又称Open Terracotta)是个JAVA 虚拟机(JVM)级的开放源码群集框架,提供HTTP Session复制,分布式缓存,POJO群集,跨越群集的JVM来实现分布式应用程序协调。 Terracotta 0.6.1版本中的index.php允许远程攻击者可以借助一个无效的文件参数,获得敏感信息,且该参数在一个错误信息中泄露安装路径。
CVSS Information
N/A
Vulnerability Type
N/A