Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The update process in IBM Security AppScan Standard 7.9 through 8.8 does not require integrity checks of downloaded files, which allows remote attackers to execute arbitrary code via a crafted file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Security AppScan Standard 输入验证漏洞
Vulnerability Description
IBM Security AppScan Standard是美国IBM公司的一套Web应用的安全测试工具。该工具可在应用开发生命周期中进行自动化动态和静态安全漏洞扫描。 IBM Security AppScan Standard 7.9至8.8版本中的更新进程中存在输入验证漏洞,该漏洞源于程序对下载的文件没有执行完整性检查。远程攻击者可借助特制的文件利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A