Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
LUCY Security Awareness Software through 4.7.x allows unauthenticated remote code execution because the Migration Tool (in the Support section) allows upload of .php files within a system.tar.gz file. The .php file becomes accessible with a public/system/static URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
LUCY Security Awareness Software 操作系统命令注入漏洞
Vulnerability Description
LUCY Security Awareness Software是瑞士LUCY公司的一个应用软件。用于构建嵌入式设备和系统的业界领先的实时操作系统。 LUCY Security Awareness Software through 4.7.x 存在安全漏洞,该漏洞允许未经身份验证的远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A