Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Adaptive Computing Moab before 7.2.9 and 8 before 8.0.0, when a pre-generated key is used, does not validate that the requesting user matches the actor in the message, which allows remote authenticated users to impersonate arbitrary users via the actor field in a message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Adaptive Computing Moab 输入验证漏洞
Vulnerability Description
Adaptive Computing Moab是美国Adaptive Computing公司的一套优化和调度中间件软件。该软件能够模拟和分析数据,并通过动态调度配置云计算和大数据环境下的应用服务管理。 Adaptive Computing Moab 7.2.8及之前版本和8.0.0版本中存在安全漏洞,该漏洞源于程序使用pre-generated密钥时没有正确验证消息中的请求。远程攻击者可借助消息中的‘actor’字段利用该漏洞冒充任意用户。
CVSS Information
N/A
Vulnerability Type
N/A