Directory traversal in the... CVE-2023-36654

- AV AC AU C I A
发布: 2023-12-12
修订: 2023-12-13

Directory traversal in the log-download REST API endpoint in ProLion CryptoSpike 3.0.15P2 allows remote authenticated attackers to download host server SSH private keys (associated with a Linux root user) by injecting paths inside REST API endpoint parameters.

0%
暂无可用Exp或PoC
当前有1条受影响产品信息