Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Eigen NLP 3.10.1, a lack of access control on the /auth/v1/sso/config/ SSO configuration endpoint allows any logged-in user (guest, standard, or admin) to view and modify information.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
N/A
Vulnerability Title
Eigen NLP 安全漏洞
Vulnerability Description
Eigen NLP是一套自然语言处理系统。 Eigen NLP存在安全漏洞,该漏洞源于缺少对auth v1 sso config的访问控制,sso配置端点允许任何登录用户(guest、standard或admin)查看和修改信息。
CVSS Information
N/A
Vulnerability Type
N/A