在 Eclipse BaSyx AAS Web UI 的 v2-241220 至 v2-260924 之前的版本中,共享的请求处理程序在发出请求时,会将所选基础设施的 头附加到出站请求中,而未检查目标来源(origin)。在启用身份验证的部署环境中,攻击者可以诱导用户打开一个精心构造的 Web UI 链接,该链接中的 或 查询参数指向攻击者控制的端点。随后,用户的浏览器会将已配置的基本认证凭据、Bearer 令牌或可用的 OAuth2 访问令牌发送至该端点。攻击者可利用泄露的凭据,以受害者的权限访问受保护的 AAS
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Eclipse Foundation | Eclipse BaSyx AAS Web UI | v2-241220 ~ v2-260924 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet