Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Paste Script 1.7.5 and earlier does not properly set group memberships during execution with root privileges, which might allow remote attackers to bypass intended file-access restrictions by leveraging a web application that uses the local filesystem.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Paste Script安全绕过漏洞
Vulnerability Description
Paste Script 1.7.5及之前版本中存在漏洞,该漏洞源于在执行root权限期间未正确设置组成员关系。远程攻击者可使用本地文件系统的web应用程序绕过预期文件访问权限。
CVSS Information
N/A
Vulnerability Type
N/A