Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in upload.php in Rapidleech rev.36 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the uploaded parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Rapid Leech upload.php目录遍历和文件包含漏洞
Vulnerability Description
Rapid Leech是很多站点都在使用的免费服务器端文件传输脚本。 Rapidleech没有对include_once()函数的输入参数执行检查,远程攻击者可以通过在请求中包含恶意的uploaded参数和到脚本文件的相对路径包含本地资源,通过指定输入中路径到本地文件导致读取任意文件内容;如果该文件包含有恶意代码,攻击者还可以完全入侵服务器。
CVSS Information
N/A
Vulnerability Type
N/A