Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
I, Librarian version 4.8 and earlier contains a SSRF vulnerability in "url" parameter of getFromWeb in functions.php that can result in the attacker abusing functionality on the server to read or update internal resources.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Scilico I, Librarian 安全漏洞
Vulnerability Description
Scilico I, Librarian是美国Scilico公司的一套在线PDF文件管理系统。 Scilico I, Librarian 4.8及之前版本中的functions.php文件的getFromWeb的‘url’参数存在服务器端请求伪造漏洞。攻击者可利用该漏洞读取或更新内部资源。
CVSS Information
N/A
Vulnerability Type
N/A