Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Arbitrary file upload vulnerability in FatPipe software
Vulnerability Description
A vulnerability in the web management interface of FatPipe WARP, IPVPN, and MPVPN software prior to versions 10.1.2r60p92 and 10.2.2r44p1 allows a remote, unauthenticated attacker to upload a file to any location on the filesystem. The FatPipe advisory identifier for this vulnerability is FPSA006.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
FatPipe 代码问题漏洞
Vulnerability Description
FatPipe是美国FatPipe公司的一种 WAN 冗余技术,它为公司提供自动和动态故障转移,因为广域网组件或服务故障导致数据线连接中断。 FatPipe WARP, IPVPN, MPVPN存在代码问题漏洞,该漏洞源于软件web管理界面缺少对于用户上传文件的有效限制和过滤,这允许远程、未经认证的攻击者可利用该漏洞将文件上传到文件系统的任何位置。
CVSS Information
N/A
Vulnerability Type
N/A