Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
FreeNAS < 0.7.2 rev 5543 exec_raw.php Arbitrary Command Execution
Vulnerability Description
FreeNAS 0.7.2 prior to revision 5543 includes an unauthenticated command‐execution backdoor in its web interface. The exec_raw.php script exposes a cmd parameter that is passed directly to the underlying shell without sanitation.
CVSS Information
N/A
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
iXsystems FreeNAS 安全漏洞
Vulnerability Description
Ixsystems iXsystems FreeNAS是美国Ixsystems公司的一套开源的存储操作系统。 iXsystems FreeNAS 0.7.2版本存在安全漏洞,该漏洞源于web界面包含未经验证的命令执行后门,可能导致执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A