漏洞标题
L7 Networks InstantScan & InstantQoS - arbitrary file upload
漏洞描述信息
L7 Networks InstantScan & InstantQoS - 任意文件上传
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
漏洞类别
危险类型文件的不加限制上传
漏洞标题
L7 Networks InstantScan & InstantQoS - Arbitrary File Upload
漏洞描述信息
L7 Networks InstantScan IS-8000 & InstantQoS IQ-8000’s file uploading function does not restrict upload of file with dangerous type. An unauthenticated remote attacker can exploit this vulnerability to upload and run arbitrary executable files to perform arbitrary system commands or disrupt service.
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
漏洞类别
危险类型文件的不加限制上传
漏洞标题
L7 Networks InstantScan 和 InstantQoS 代码问题漏洞
漏洞描述信息
L7 Networks InstantScan IS-8000 & InstantQoS IQ-8000是中国L7 Networks公司的一款安全软件。 L7 Networks InstantScan 和 InstantQoS 存在代码问题漏洞,该漏洞源于文件上传功能不限制危险类型文件的上传。
CVSS信息
N/A
漏洞类别
代码问题