Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
RaspAP raspap-webgui 3.3.1 is vulnerable to Directory Traversal in ajax/networking/get_wgkey.php. An authenticated attacker can send a crafted POST request with a path traversal payload in the `entity` parameter to overwrite arbitrary files writable by the web server via abuse of the `tee` command used in shell execution.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
RaspAP 安全漏洞
Vulnerability Description
RaspAP是RaspAP开源的应用软件一款基于 Debian 的设备的简单无线 AP 设置和管理软件。 RaspAP 3.3.1版本存在安全漏洞,该漏洞源于目录遍历,可能导致任意文件覆盖。
CVSS Information
N/A
Vulnerability Type
N/A