在 dbgate 版本 7.3.1 及之前版本中发现了一个安全漏洞。该漏洞影响的是“创建连接端点”(Create Connection Endpoint)组件中 文件的 函数。通过操纵 参数,可导致路径遍历(Path Traversal)漏洞。该漏洞可被远程利用,且相关利用代码已公开,可能被用于发起攻击。 厂商在披露早期已收到通知,但一直未作出任何回应。 注:PR #1530 / 提交 5f99b4d82(7.2.5 版本)已通过 函数对其他导出端点进行了加固,但遗漏了此端点,从而导致该漏洞存在。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | dbgate | 7.3.0 |
cpe:2.3:a:dbgate:dbgate:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-100908 | 7.5 HIGH | Eyeplus p2pcam HTTP stack-based overflow |
| CVE-2026-101067 | 7.3 HIGH | dbgate save-uploaded-file Endpoint files.js saveUploadedFile path traversal |
| CVE-2026-101066 | 7.3 HIGH | dbgate Archive Link Creation archive.js createLink path traversal |
| CVE-2026-101005 | 7.3 HIGH | October CMS SSRF Protection ResizeImages.php validateExternalImageHost server-side request |
| CVE-2026-100909 | 7.3 HIGH | OctoberCMS ResizeImages.php getSourcePathForResize server-side request forgery |
| CVE-2026-101069 | 6.5 MEDIUM | dbgate Export databaseConnections.js exportModelSql path traversal |
| CVE-2026-101070 | 5.3 MEDIUM | dbgate Files Endpoint runners.js files path traversal |
| CVE-2026-100907 | 5.3 MEDIUM | Eyeplus p2pcam Service snapshot information disclosure |
| CVE-2026-100906 | 5.3 MEDIUM | Eyeplus ONVIF Device GetUsers information disclosure |
No comments yet