漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Petlibro Smart Pet Feeder Platform through 1.7.31 Information Disclosure via API endpoint
Vulnerability Description
Petlibro Smart Pet Feeder Platform versions up to 1.7.31 contains an information disclosure vulnerability that allows unauthorized access to device hardware information by exploiting insecure API endpoints. Attackers can retrieve device serial numbers and MAC addresses through /device/devicePetRelation/getBoundDevices using pet IDs, enabling full device control without proper authorization checks.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
通过私有数据的索引导致的信息暴露
Vulnerability Title
Petlibro Smart Pet Feeder Platform 安全漏洞
Vulnerability Description
Petlibro Smart Pet Feeder Platform是Petlibro公司的一套智能宠物管理系统。 Petlibro Smart Pet Feeder Platform 1.7.31及之前版本存在安全漏洞,该漏洞源于API端点不安全,可能导致信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A