Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Orion Application Server 2.0.7 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Orion Application Server 非打印字符溢出序列的HTTP请求执行任意文件和从写漏洞
Vulnerability Description
Orion Application Server 2.0.7版本向具有一个没有审查过的非打印字符的登录文件写入数据,这可能会允许远程攻击者借助一个包含终极模拟器的一个溢出序列的HTTP请求,修改一个窗口的标题或可能执行任意执行并重写文件。
CVSS Information
N/A
Vulnerability Type
N/A