Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Biztalk360 before 11.5. Because of incorrect access control, any user is able to request the loading a DLL file. During the loading, a method is called. An attacker can craft a malicious DLL, upload it to the server, and use it to achieve remote code execution on the server.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Biztalk360 安全漏洞
Vulnerability Description
Biztalk360是英国Biztalk360公司的一个一体化运维和监控平台。 Biztalk360 11.5之前版本存在安全漏洞,该漏洞源于访问控制不当,任何用户均可请求加载DLL文件,攻击者可上传恶意DLL并利用其在服务器上实现远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A