Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request and obtain the upload folder path that includes the hostname in a UNC path.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CIPPlanner CIPAce 信息泄露漏洞
Vulnerability Description
CIPPlanner CIPAce是美国CIPPlanner公司的一套业务流程自动化和应用程序开发平台。 CIPPlanner CIPAce 9.1 Build 2019092801版本中存在安全漏洞。攻击者可发送API请求利用该漏洞获取上传文件夹路径(包括UNC路径中的主机名)。
CVSS Information
N/A
Vulnerability Type
N/A