Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Matrix Sydent before 1.0.3 and Synapse before 0.99.3.1. Random number generation is mishandled, which makes it easier for attackers to predict a Sydent authentication token or a Synapse random ID.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Matrix Sydent和Matrix Synapse 安全特征问题漏洞
Vulnerability Description
Matrix Sydent和Matrix Synapse都是英国Matrix.org基金会的产品。Matrix Sydent是一款Matrix身份验证服务器API的实现。Matrix Synapse是一款矩阵管理服务器的实现。 Matrix Sydent 1.0.3之前版本和Matrix Synapse 0.99.3.1之前版本中存在安全漏洞,该漏洞源于程序没有正确处理随机数的生成。攻击者可利用该漏洞获取Sydent身份验证令牌或Synapse随机ID。
CVSS Information
N/A
Vulnerability Type
N/A