kkFileView 5.0.0 至 5.0.2 版本在 FileController.java 中存在目录遍历漏洞。fileUpload、createFolder 和 existsFile 端点接受一个 “path” 参数,该参数在被拼接到上传基础路径时未进行任何验证,从而导致未经身份验证的攻击者可以通过构造的 multipart 请求,在预期的 fileDir 根目录之外创建任意目录并写入任意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105571 | 7.3 HIGH | PickMall Lilishop Mobile Binding bindMobile improper authorization |
| CVE-2026-105707 | 5.3 MEDIUM | uptrace user_handler.go Login information exposure |
| CVE-2026-105708 | 4.3 MEDIUM | imgproxy SVG svg.go sanitizeElement cross site scripting |
| CVE-2026-105572 | 4.3 MEDIUM | PickMall Lilishop Buyer Invoice List receipt authorization |
| CVE-2026-77178 | Oracle VM VirtualBox 堆外写漏洞 | |
| CVE-2026-95153 | Bludit CMS 3.22.0信息泄露漏洞 | |
| CVE-2025-71384 | Dbit WIFI4 N300 v1.0.0堆溢出允许执行OS命令 | |
| CVE-2025-71383 | Dbit WIFI4 N300 v1.0.0管理界面JSON解析导致崩溃漏洞 | |
| CVE-2025-45871 | LogicalDOC Enterprise 9.1.1盲SQL注入 |
No comments yet