Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ess.pm in NitroSecurity NitroView ESM 8.4.0a, when ESSPMDebug is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the Request parameter to ess.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NitroSecurity NitroView ESM ess.pm文件输入验证漏洞
Vulnerability Description
NitroSecurity NitroView ESM 是一款实时安全时间和信息相关性分析的工具。 NitroSecurity NitroView ESM 8.4.0a版本中的ess.pm文件在ESSPMDebug启用时存在输入验证漏洞。远程攻击者可以借助向ess传递的Request参数中的shell元字符执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A