Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Fujian Apex LiveBOS Endpoint UploadImage.do path traversal
Vulnerability Description
A vulnerability has been found in Fujian Apex LiveBOS up to 2.0. Impacted is an unknown function of the file /feed/UploadImage.do of the component Endpoint. Such manipulation of the argument filename leads to path traversal. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 2.1 is recommended to address this issue. Upgrading the affected component is advised.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Vulnerability Title
Apex LiveBOS 路径遍历漏洞
Vulnerability Description
Apex LiveBOS是中国顶点(Apex)公司的一款快速开发工具。 Apex LiveBOS 2.0及之前版本存在路径遍历漏洞,该漏洞源于Endpoint组件文件/feed/UploadImage.do中未知功能对参数filename的操作,可能导致路径遍历。
CVSS Information
N/A
Vulnerability Type
N/A