Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a crafted filename.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
NTP 安全漏洞
Vulnerability Description
NTP(Network Time Protocol,网络时间协议)是一款通过网络同步计算机时钟的协议。 NTP中的ntpq saveconfig命令存在安全漏洞,该漏洞源于程序没有正确的过滤特殊字符。攻击者可利用该漏洞更改本地文件系统上的文件。以下版本受到影响:NTP 4.1.2版本,4.2.8p6之前的4.2.x版本,4.3版本,4.3.25版本,4.3.70版本,4.3.77版本。
CVSS Information
N/A
Vulnerability Type
N/A