Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Xplico before 1.2.1 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the name of an uploaded PCAP file. NOTE: this issue can be exploited without authentication by leveraging the user registration feature.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Xplico 安全漏洞
Vulnerability Description
Xplico是一款开源的网络取证分析工具。 Xplico 1.2.1之前的版本中存在安全漏洞。远程攻击者可借助已上传PCAP文件名称中的shell元字符利用该漏洞执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A