alf.io是开源票务预订系统。 alf.io 2.0-M4-2304 之前版本存在安全漏洞,该漏洞源于Engine模板中使用的特殊元素的不当中和。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| alfio-event | alfio-event/alf.io | unspecified ~ 2.0-M4-2304 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-2260 | Authorization Bypass Through User-Controlled Key in alfio-event/alf.io | |
| CVE-2023-2258 | Improper Neutralization of Formula Elements in a CSV File in alfio-event/alf.io |
No comments yet