Cloud Commander 在 19.20.2 之前的版本存在目录遍历漏洞。该漏洞存在于 REST 文件操作和 Markdown 接口中,原因是未对路径规范化进行充分验证。攻击者可利用路径遍历序列,在配置好的根目录之外读取、写入、移动或复制文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| coderaiser | cloudcmd | 0 ~ 19.20.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet