以下是该漏洞描述信息的中文翻译: 在 Grav 2.0.25 之前的版本中,随附的 Web 服务器配置示例文件中的访问控制拒绝规则存在区分大小写的匹配问题。在 (IIS)文件中,所有拒绝规则(包括 、 、 、 、 、 、 、 )均在其 URL 重写 元素中设置了 ,这覆盖了 IIS 默认设置的 。由于这些规则属于 URL 重写匹配(而非 元素),因此不存在不区分大小写的降级机制。 在运行于区分大小写文件系统(注:此处原文有误,NTFS 默认不区分大小写,但 IIS 本身默认配置是不区分大小写的;结合上下文,漏洞利用
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-100670 | 8.8 HIGH | Grav CMS 2.0.14 through 2.0.24 Privilege Escalation via Blueprint Guard Bypass |
| CVE-2026-100673 | 8.2 HIGH | Grav Data Manager before 1.4.5 Stored XSS via item-detail view |
| CVE-2026-100671 | 8.0 HIGH | Grav before 2.0.25 Session Cookie Theft via Twig Sandbox |
| CVE-2026-100672 | 7.5 HIGH | grav-plugin-comments before 1.2.11 Unauthenticated Information Disclosure |
| CVE-2026-100668 | 6.5 MEDIUM | Grav before 2.0.25 Sandbox Escape via array Filter |
| CVE-2026-100667 | 5.3 MEDIUM | grav-plugin-login 3.8.7 through 3.9.6 Two-Factor Authentication Bypass |
No comments yet