Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Pydio 6.0.8 mishandles error reporting when a directory allows unauthenticated uploads, and the remote-upload option is used with the http://localhost:22 URL. The attacker can obtain sensitive information such as the name of the user who created that directory and other internal server information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Pydio 安全漏洞
Vulnerability Description
Pydio(AjaXplorer)是一款基于Web的远程文件管理器。该管理器支持上传和下载文件、在线文件编辑、图片预览等。 Pydio 6.0.8版本中存在安全漏洞,该漏洞源于程序没有正确处理错误报告。攻击者可利用该漏洞获取敏感信息,例如:用户名称和其他内部服务器信息。
CVSS Information
N/A
Vulnerability Type
N/A