Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Eigen NLP 3.10.1, a lack of access control on the /auth/v1/user/ user creation endpoint allows a standard user to create a super user account with a defined password. This directly leads to privilege escalation.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
Eigen NLP 安全漏洞
Vulnerability Description
Eigen NLP是一套自然语言处理系统。 Eigen NLP 3.10.1 中存在安全漏洞,该漏洞源于/auth/v1/user/ 用户创建端点缺乏访问控制。该漏洞允许标准用户使用定义的密码创建超级用户帐户,这直接导致权限提升。
CVSS Information
N/A
Vulnerability Type
N/A