Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An unrestricted file upload vulnerability in the Backup/Restore Archive component of Extensis Portfolio v4.0 allows remote attackers to execute arbitrary code via a crafted ZIP file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Celartem Extensis Portfolio 代码问题漏洞
Vulnerability Description
Celartem Extensis Portfolio是日本Celartem公司的一个数字资产管理解决方案。 Celartem Extensis Portfolio 3.0.0版本到3.6.3版本存在代码问题漏洞,该漏洞源于软件当处理zip档案内文件名中的目录遍历序列时输入验证存在错误。远程用户可以上传专门制作的压缩文件,并覆盖系统上的文件,从而导致系统损坏。该漏洞允许远程用户执行目录遍历攻击。
CVSS Information
N/A
Vulnerability Type
N/A