Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0. Administration/Controllers/ImportController.cs allows path traversal (for copy and delete actions) in the ImportController.Create method via a TempFileName field.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Smartstore SmartStoreNET 路径遍历漏洞
Vulnerability Description
Smartstore SmartStoreNET是德国Smartstore公司的一个开源的电子商务Web平台。该平台包含了CRM、CMS、销售、营销、支付、订单处理等等功能。 Smartstore 4.1.0之前版本存在安全漏洞,该漏洞允许ImportController中的路径遍历。
CVSS Information
N/A
Vulnerability Type
N/A