Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An insecure direct object reference vulnerability in download.cgi in ASUSTOR AS6202T ADM 3.1.0.RFQ3 allows the ability to reference the "download_sys_settings" action and then specify files arbitrarily throughout the system via the act parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ASUSTOR AS6202T ADM 安全漏洞
Vulnerability Description
ASUSTOR AS6202T ADM是华芸科技(ASUSTOR)公司的一套专用于ASUSTOR NAS存储设备的操作系统。 ASUSTOR AS6202T ADM 3.1.0.RFQ3版本中的download.cgi文件存在安全漏洞。远程攻击者可通过发送特制的HTTP请求利用该漏洞获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A