Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2025-1035 PoC — Komtera KLog Server 路径遍历漏洞

Source
Associated Vulnerability
Title:Komtera KLog Server 路径遍历漏洞 (CVE-2025-1035)
Description:Komtera KLog Server是Komtera公司的一个日志记录解决方案。 Komtera KLog Server 3.1.1之前版本存在路径遍历漏洞,该漏洞源于在处理Web输入到文件系统调用时,限制目录路径名不当。
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Komtera Technolgies KLog Server allows Manipulating Web Input to File System Calls.This issue affects KLog Server: before 3.1.1.
File Snapshot

id: CVE-2025-1035 info: name: KLog Server - Path Traversal author: s4e-io severity: medium ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.