Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Monkey HTTP Daemon 0.9.3 might allow local users to overwrite arbitrary files via a symlink attack on a PID file, as demonstrated by a pathname different from the default /var/run/monkey.pid pathname.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Monkey HTTP Daemon 后置链接漏洞
Vulnerability Description
Monkey HTTP Daemon(monkeyd)是Monkey项目组开发的一套Web服务器软件。该软件具有可扩展、低内存、低CUP消耗等特点。 Monkey HTTP Daemon 0.9.3版本中存在漏洞。本地攻击者可利用该漏洞通过PID文件上的符号链接攻击(如从默认/var/run/monkey.pid的路径名的不同路径名),重写任意文件。
CVSS Information
N/A
Vulnerability Type
N/A