Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An authenticated arbitrary file upload vulnerability in the /documentCache/upload endpoint of InfoDom Performa 365 v4.0.1 allows attackers to execute arbitrary code via uploading a crafted SVG file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
InfoDom Performa 安全漏洞
Vulnerability Description
InfoDom Performa是InfoDom公司的一款用于变更管理的数字平台。 InfoDom Performa 365 4.0.1版本存在安全漏洞,该漏洞源于/documentCache/upload端点存在经过身份验证的任意文件上传漏洞,允许攻击者通过上传精心设计的SVG文件来执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A