漏洞描述 Artica Proxy是西班牙Artica公司的一款开源的Artica代理解决方案。Artica Proxy administrative web application存在信息泄露漏洞,此漏洞是由于未充分验证用户输入参数mailattach的数据导致的。
相关漏洞推荐 Oracle Identity Manager /iam/governance/applicationmanagement/api/v1/applications/groovyscriptstatus;.wadl 命令执行漏洞(CVE-2025-61757) OAuth2-Proxy 需授权 中和不当漏洞 Milvus Proxy 身份验证缺陷漏洞 OpenSSH ProxyCommand 命令注入漏洞 esafenet-cdgserver3-cdgrenewapplication-rce: 亿赛通电子文档系统 CDGRenewApplication RCE esafenet-cdgserver3-decryptapplicationservice1-rce: 亿赛通电子文档系统 DecryptApplicationService1 RCE MapProxy /demo 文件包含漏洞 MapProxy存在本地文件包含漏洞 POC CVE-2018-19458: PHP Proxy 3.0.3 - Local File Inclusion POC CVE-2019-17270: Yachtcontrol Webapplication 1.0 - Remote Command Injection POC CVE-2020-13158: Artica Proxy Community Edition <4.30.000000 - Local File Inclusion POC CVE-2020-13851: Artica Pandora FMS 7.44 - Remote Code Execution POC CVE-2020-17505: Artica Web Proxy 4.30 - OS Command Injection