MISP 存在一个权限提升漏洞,位于标签集合(tag collection)的创建和编辑功能中。受影响的操作会接收完整的 HTTP 请求负载,并将其传递给批量关联保存操作(bulk-association save operation)。该操作不仅会写入预期的标签集合记录,还会将请求负载中存在的任何关联模型数据一并写入数据库。 拥有“标签编辑器”(tag editor)权限的用户可以构造一个请求,在包含标签集合字段的同时,额外注入其他模型数据(例如 User 或 Organisation 记录)。由于该保存操作不加
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-103235 | 8.7 HIGH | MISP Event Delegation Mass Assignment Allows Retargeting Delegation to Arbitrary Events |
| CVE-2026-103237 | 8.3 HIGH | MISP: Nested Model Alias Key Bypasses Sanitization to Modify Cross-Tenant Rows |
No comments yet