漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Nginx UI: DoS via Negative Integer Input in Logrotate Interval
Vulnerability Description
Nginx UI is a web user interface for the Nginx web server. Prior to version 2.3.4, an input validation vulnerability in the logrotate configuration allows an authenticated user to cause a complete Denial of Service (DoS). By submitting a negative integer for the rotation interval, the backend enters an infinite loop or an invalid state, rendering the web interface unresponsive. This issue has been patched in version 2.3.4.
CVSS Information
N/A
Vulnerability Type
输入验证不恰当
Vulnerability Title
Nginx UI 输入验证错误漏洞
Vulnerability Description
Nginx UI是Jacky个人开发者的一个 Nginx 的 WebUI。 Nginx UI 2.3.4之前版本存在输入验证错误漏洞,该漏洞源于logrotate配置中的输入验证问题,允许经过身份验证的用户通过提交负整数导致Web界面无响应,造成完全拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A