Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
GleamTech FileVista before 6.1 allows remote authenticated users to create arbitrary files and possibly execute arbitrary code via a crafted path in a zip archive, which is not properly handled during extraction.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Gleamtech FileVista 输入验证漏洞
Vulnerability Description
Gleamtech FileVista是土耳其GleamTech公司的一套基于Web的文件共享软件。该软件提供共享文件访问控制、加密存储文件等功能。 GleamTech FileVista 6.0.9及之前版本中存在安全漏洞,该漏洞源于程序在提取压缩文件时没有正确验证文件的规定路径。远程攻击者可借助特制的路径利用该漏洞创建任意文件,或执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A