Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
FitNesse Wiki 20131110, 20140201, and earlier allows remote attackers to execute arbitrary commands by defining a COMMAND_PATTERN and TEST_RUNNER in the pageContent parameter when editing a page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FitNesse Wiki 任意代码执行漏洞
Vulnerability Description
FitNesse Wiki是美国软件开发者Robert Cecil Martin和其他人共同开发的一款Wiki Web服务器,它可作为协作工具、测试工具等。 FitNesse Wiki 20131110版本和20140201及之前的版本存在安全漏洞,该漏洞源于当编辑页面时,程序没有正确验证‘pageContent’参数中的COMMAND_PATTERN和TEST_RUNNER字段。远程攻击者可利用该漏洞执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A