Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for Chef allows remote attackers to execute arbitrary code via crafted serialized data in a cookie.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Chef Manage 任意代码执行漏洞
Vulnerability Description
Chef是美国Chef Software公司的一套面向IT专业人员并为整个基础设施提供配置管理和自动化功能的管理系统。Chef Manage是一个企业级Chef插件,它通过一个基于Web的用户界面可视化和管理节点、数据包、角色、环境和基于角色的访问控制(RBAC)等。 Chef Manage插件1.11.4及之前版本中存在安全漏洞。远程攻击者可借助cookie中特制的序列化数据利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A