漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Znuny and Znuny LTS 6.0.31 through 6.5.7 and Znuny 7.0.1 through 7.0.16 where a logged-in user can upload a file (via a manipulated AJAX Request) to an arbitrary writable location by traversing paths. Arbitrary code can be executed if this location is publicly available through the web server.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Znuny和Znuny LTS 安全漏洞
Vulnerability Description
Znuny是Znuny公司的一个工单系统。 Znuny和Znuny LTS存在安全漏洞,该漏洞源于存在路径遍历漏洞。攻击者可利用该漏洞将文件上传到任意可写位置。受影响的产品和版本:Znuny和Znuny LTS 6.0.31至6.5.7版本,7.0.1至7.0.16版本。
CVSS Information
N/A
Vulnerability Type
N/A