Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in the WWWHELP Service (js/html/wwhelp.htm) in Cyberoam Central Console (CCC) 2.00.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the file parameter in an Online_help action.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cyberoam Central Console ‘file’ 参数本地文件包含漏洞
Vulnerability Description
Cyberoam Central Console (CCC)中存在本地文件包含漏洞,该漏洞源于对用户提供的数据未经充分过滤。攻击者可利用该漏洞在web服务器进程的上下文中获取潜在地敏感信息进而执行任意本地脚本,这可能允许攻击者操控应用程序和计算机,也可能执行其他的攻击。 Cyberoam Central Console 2.00.2版本中存在该漏洞,其他版本也可能受影响。
CVSS Information
N/A
Vulnerability Type
N/A