Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Information leakage vulnerability in the administrative console in Dialogic PowerMedia XMS through 3.5 allows remote attackers to read arbitrary files from the /var/ directory because a symlink exists under the web root.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dialogic PowerMedia XMS 管理控制台信息泄露漏洞
Vulnerability Description
Dialogic PowerMedia XMS是美国Dialogic公司的一套用于实时通信的软件多媒体服务器,它能够为IMS、MRF、企业和WebRTC应用程序提供实时多媒体通信解决方案。 Dialogic PowerMedia XMS 3.5及之前版本中的管理控制台存在信息泄露漏洞,该漏洞源于Web根目录下存在符号链接。远程攻击者可利用该漏洞读取/var/目录下的任意文件。
CVSS Information
N/A
Vulnerability Type
N/A