Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
QuickShare File Server 1.2.1 Path Traversal RCE
Vulnerability Description
QuickShare File Server 1.2.1 contains a path traversal vulnerability in its FTP service due to improper sanitation of user-supplied file paths. Authenticated users can exploit this flaw by submitting crafted sequences to access or write files outside the intended virtual directory. When the "Writable" option is enabled (default during account creation), this allows attackers to upload arbitrary files to privileged locations such as system32, enabling remote code execution via MOF injection or executable placement.
CVSS Information
N/A
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Vulnerability Title
QuickShare File Server 安全漏洞
Vulnerability Description
QuickShare File Server是QuickShare公司的一个文件共享服务器软件。 QuickShare File Server 1.2.1版本存在安全漏洞,该漏洞源于FTP服务对用户提供文件路径清理不当,可能导致路径遍历攻击。
CVSS Information
N/A
Vulnerability Type
N/A