Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Bravo Tejari Procurement Portal, uploaded files are not properly validated by the application either on the client or the server side. An attacker can take advantage of this vulnerability and upload malicious executable files to compromise the application, as demonstrated by an esop/evm/OPPreliminaryForms.do?formId=857 request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bravo Tejari Procurement Portal 安全漏洞
Vulnerability Description
Bravo Tejari Procurement Portal是一套采购门户网站系统。 Bravo Tejari Procurement Portal中存在安全漏洞,该漏洞源于程序无法正确的验证上传的文件。攻击者可利用该漏洞上传恶意的可执行文件来控制应用程序。
CVSS Information
N/A
Vulnerability Type
N/A