TDuck 调查表单在 6.0 及以下版本中,未对提交端点正确验证写操作密码,仅在前端进行校验。远程未认证的攻击者可以利用分享链接中的表单密钥,直接向公开的提交 API 提交表单条目,而无需提供密码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| TDuckCloud | tduck-survey-form | 0 ~ 6.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-100303 | 5.4 MEDIUM | TDuck survey form through 6.0 Missing Authorization in Form Theme Management Endpoints |
| CVE-2026-100304 | 5.3 MEDIUM | TDuck survey form 6.0 Information Disclosure via Fail-Open Form Ownership Check |
| CVE-2026-100305 | 4.3 MEDIUM | TDuck survey form through 6.0 Fill-In Restriction Bypass via Authenticated Submission Endp |
No comments yet