Apache Syncope是美国阿帕奇(Apache)基金会的一套用于企业环境中的开源数字身份管理系统。该系统支持身份管理、角色配置等。 Apache Syncope 2.1版本至2.1.14版本和3.0版本至3.0.7版本存在输入验证错误漏洞,该漏洞源于允许HTML标签添加到任何文本字段。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache Syncope | 2.1 ~ 2.1.14 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-23321 | Apache RocketMQ: Unauthorized Exposure of Sensitive Data | |
| CVE-2024-34457 | Apache StreamPark IDOR Vulnerability |
No comments yet