Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in halo V1.1.3. A Zip Slip Directory Traversal Vulnerability in the backend,the attacker can overwrite some files, such as ftl files, .bashrc files in the user directory, and finally get the permissions of the operating system.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
halo 路径遍历漏洞
Vulnerability Description
Halo是个人开发者的一套个人博客系统。 halo 1.1.3版本存在安全漏洞。攻击者可利用该漏洞覆盖用户目录中的一些文件,如ftl文件、.bashrc文件,并最终获得操作系统的权限。
CVSS Information
N/A
Vulnerability Type
N/A