Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in the email-template feature in Novell Filr before 1.2 Security Update 3 and 2.0 before Security Update 2 allows remote attackers to bypass intended access restrictions and write to arbitrary files via a .. (dot dot) in a blob name.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Novell Filr 目录遍历漏洞
Vulnerability Description
Novell Filr是美国Novell公司的一套用于企业的文件访问和共享解决方案。 Novell Filr 1.2 Security Update 2及之前的版本和2.0 Security Update 1及之前的版本中的email-template功能存在目录遍历漏洞。远程攻击者可借助blob名中的‘..’利用该漏洞绕过特定的访问限制,编写任意文件。
CVSS Information
N/A
Vulnerability Type
N/A