Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
FreedomBox through 20.13 allows remote attackers to obtain sensitive information from the /server-status page of the Apache HTTP Server, because a connection from the Tor onion service (or from PageKite) is considered a local connection. This affects both the freedombox and plinth packages of some Linux distributions, but only if the Apache mod_status module is enabled.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FreedomBox 安全漏洞
Vulnerability Description
Freedombox是一个基于Debian的免费软件家庭服务器操作系统。 FreedomBox 20.13版本以及之前版本中存在安全漏洞,该漏洞允许攻击者从 Apache服务的server-status页面获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A