Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Logpoint before 7.4.0. A path injection vulnerability is seen while adding a CSV enrichment source. The source_name parameter could be changed to an absolute path; this will write the CSV file to that path inside the /tmp directory.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Logpoint 安全漏洞
Vulnerability Description
Logpoint是丹麦Logpoint公司的一款网络安全应用程序。 Logpoint 7.4.0 之前版本存在安全漏洞,该漏洞源于source_name参数可以改为绝对路径,这会将 CSV 文件写入 tmp 目录内。
CVSS Information
N/A
Vulnerability Type
N/A