在 7.10.2 之前的版本中,Fortra GoAnywhere MFT 的 端点存在路径遍历漏洞。同时拥有 Secure Folders 和 Secure Mail 权限的 Web 用户可以借此逃逸出其沙盒化的主目录,从而实现任意文件读取。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortra | GoAnywhere MFT | 0 ~ 7.10.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet