upKeeper是upKeeper公司的一种基于云的或本地解决方案。 upKeeper 5.1.9及之前版本存在安全漏洞,该漏洞源于存在通过用户控制密钥绕过授权漏洞,允许利用REST对系统资源的信任来获取敏感数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| upKeeper Solutions | upKeeper Manager | 0 ~ 5.1.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-42466 | Lack of resources and rate limiting - login | |
| CVE-2024-42465 | Lack of resources and rate limiting - two factor authentication | |
| CVE-2024-42463 | Leak of organizations messages | |
| CVE-2024-42462 | Bypass multifactor authentication |
No comments yet