漏洞描述 HCL AppScan Traffic Recorder是印度HCL公司的一个流量记录器。 HCL AppScan Traffic Recorder存在路径遍历漏洞,该漏洞源于未能充分中和文件名中的特殊字符,可能导致完全破坏或接管应用程序或运行应用程序的计算机。
相关漏洞推荐 POC CVE-2013-3526: WordPress Plugin Traffic Analyzer - 'aoid' Cross-Site Scripting POC CVE-2021-24750: WordPress Visitor Statistics (Real Time Traffic) <4.8 -SQL Injection POC CVE-2022-33119: NUUO NVRsolo Video Recorder 03.06.02 - Cross-Site Scripting POC CVE-2023-0600: WP Visitor Statistics (Real Time Traffic) < 6.9 - SQL Injection POC cloudfront-traffic-unencrypted: CloudFront Traffic To Origin Unencrypted POC nacl-open-inbound: Open Inbound NACL Traffic POC nacl-outbound-restrict: Unrestricted NACL Outbound Traffic POC gcloud-gke-vpc-native-disabled: GKE Clusters Without VPC-Native Traffic Routing POC winrm-allows-unencrypted-traffic: WinRM Allows Unencrypted Traffic POC global-traffic-statistics: Global Traffic Statistics Exposure POC nginx-vhost-traffic-status: Nginx Vhost Traffic Status POC ntopng-traffic-dashboard: Ntopng Traffic Dashboard - Detect POC unauthenticated-prtg: PRTG Traffic Grapher - Unauthenticated Access