Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Incomplete blacklist vulnerability in NULL FTP Server Free and Pro 1.1.0.7 allows remote authenticated users to execute arbitrary commands via a custom SITE command containing shell metacharacters such as "&" (ampersand) in the middle of an argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Vwsolutions Null FTP Server 'SITE'命令任意指令注入漏洞
Vulnerability Description
NULL FTP Server是一款FTP服务器程序。 NULL FTP Server Free和Pro 1.1.0.7版本中存在不完整黑名单漏洞。远程验证用户可以借助包含自变量中间的一个外壳元字符如"&的客户SITE指令,执行任意指令。
CVSS Information
N/A
Vulnerability Type
N/A