Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue in aliyundrive-webdav v.2.3.3 and before allows a remote attacker to execute arbitrary code via a crafted payload to the sid parameter in the action_query_qrcode component.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
aliyundrive-webdav 安全漏洞
Vulnerability Description
aliyundrive-webdav是messense个人开发者的一个阿里云盘 WebDAV 服务。 aliyundrive-webdav v.2.3.3 及之前版本中存在安全漏洞,该漏洞源于允许远程攻击者使用精心设计的有效载荷通过 action_query_qrcode 组件中的 sid 参数执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A