Hyperledger Fabric是Hyperledger开源的一个企业级许可的分布式账本框架。用于开发解决方案和应用程序。 Hyperledger Fabric 2.5.9版本存在安全漏洞,该漏洞源于无法验证请求是否在预期的时间窗口内具有时间戳。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | PoC covering the problem of transaction time manipulation (CVE-2024-45244) in the Hyperledger Fabric blockchain. | https://github.com/shanker-sec/HLF_TxTime_spoofing | POC Details |
| 2 | Chaincode for blockchain Hyperledger Fabric provides accurate time to other chaincodes. Thus solving the security problem associated with transaction time manipulation (CVE-2024-45244). | https://github.com/shanker-sec/hlf-time-oracle | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-8144 | 3.5 LOW | ClassCMS Logo admin cross site scripting |
| CVE-2024-8145 | 2.4 LOW | ClassCMS Article admin cross site scripting |
| CVE-2024-45258 | req 安全漏洞 | |
| CVE-2023-48957 | PureVPN 安全漏洞 |
No comments yet