漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
The Multiple File Upload add-on component 3.1.0 for OutSystems is vulnerable to Unrestricted File Upload. This occurs because file extension and size validations are enforced solely on the client side. An attacker can intercept the upload request and modify a parameter to bypass extension restrictions and upload arbitrary files. NOTE: this is a third-party component that is not supplied or supported by OutSystems.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Vulnerability Type
服务端安全的客户端实施
Vulnerability Title
OutSystems Multiple File Upload 安全漏洞
Vulnerability Description
OutSystems Multiple File Upload是美国OutSystems公司的一个 OutSystems 平台的原生多文件上传组件。 OutSystems Multiple File Upload 3.1.0之前版本存在安全漏洞,该漏洞源于客户端验证不足可能导致上传任意文件。
CVSS Information
N/A
Vulnerability Type
N/A