NodeBB是Design Create Play团队的一套使用Node.js(一套建立在Google V8 JavaScript引擎之上的网络应用平台)构建的论坛系统。 NodeBB 2.6.1之前版本存在安全漏洞,该漏洞源于在socket.io消息处理中使用了带有原型的普通对象,可以使用特制的有效载荷来冒充其他用户和接管帐户。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Basic POC exploit for CVE-2022-46164 | https://github.com/stephenbradshaw/CVE-2022-46164-poc | POC Details |
No public POC found.
Login to generate AI POCNo comments yet