CHUID Upload Directory Escaping File...

- AV AC AU C I A
发布: 2002-01-23
修订: 2025-04-13

chuid is a freely available, open source user id changing utility. It was written and is maintained by Scott Parish. It is designed for use on the Linux operating system. chuid does not properly handle user-supplied input. Due to insufficient sanitizing of user input, it is possible for a remote user to pass the name of a file outside of the predesignated ownership changing directory. This could allow a remote user to change the ownership or group membership of a restricted or privileged file.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息