在 Windows 系统上的 Drogon(最高版本至 1.9.13-1/10.0-beta.3)中发现了一个漏洞。受影响的是组件“静态文件路由器(Static File Router)”中的 文件里的 函数。该漏洞允许攻击者通过执行某种操纵操作实现路径遍历。攻击可以从远程发起。目前该漏洞的利用代码已被公开,并可被实际使用。厂商在漏洞披露前早期已被联系,但未作出任何回应。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Drogon | 1.9.13-1 |
cpe:2.3:a:drogon:drogon:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet