Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Safe Software FME Server v2021.2.5, v2022.0.0.2 and below was discovered to contain a Path Traversal vulnerability via the component fmedataupload.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
Safe Software FME Server 路径遍历漏洞
Vulnerability Description
Safe Software FME Server是加拿大Safe Software公司的一个网络数据转换应用程序。用于在无代码环境中自动化数据和应用程序集成工作流程。 Safe Software FME Server 存在路径遍历漏洞,该漏洞源于当发出上传文件的请求时,不会执行非法字符的验证检查,攻击者利用该漏洞可以将文件写入托管 FMEServer 的服务器驱动器上的任何位置,这可能导致意外或恶意文件上传。
CVSS Information
N/A
Vulnerability Type
N/A