Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Vembu StoreGrid 4.4.x, the front page of the server web interface leaks the private IP address in the "ipaddress" hidden form value of the HTML source code, which is disclosed because of incorrect processing of an index.php/ trailing slash.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Vembu StoreGrid 信息泄露漏洞
Vulnerability Description
Vembu StoreGrid是美国Vembu公司的一套企业级数据备份软件。 Vembu StoreGrid 4.4.x版本中的服务器Web界面的首页存在安全漏洞,该漏洞源于程序没有正确地处理反斜杠(例如:http://clientip/index.php/)。攻击者可利用该漏洞泄露私有IP地址。
CVSS Information
N/A
Vulnerability Type
N/A