Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in server.js in etcd-browser 87ae63d75260. By supplying a /../../../ Directory Traversal input to the URL's GET request while connecting to the remote server port specified during setup, an attacker can retrieve local operating system files from the remote system.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
etcd 安全漏洞
Vulnerability Description
etcd是一套使用Go语言编写的用于分布式系统的键值存储系统。 etcd-browser 87ae63d75260版本存在安全漏洞,该漏洞源于server.js 中发现了一个问题,在安装过程中指定的远程服务器端口,通过 URL 发送GET 请求可以进行目录遍历,攻击者利用该漏洞可以从远程系统检索本地操作系统文件。
CVSS Information
N/A
Vulnerability Type
N/A