Fleet 4.87.0 之前的版本存在一个身份验证绕过漏洞,该漏洞位于设备 API 中。此 API 除了接受设备 UUID 外,还允许使用主机名和硬件序列号作为身份验证令牌。未认证的攻击者如果知道或能够猜测这些非机密标识符,即可冒充 iOS/iPadOS 主机进行身份验证,从而读取设备数据并触发与设备相关的操作,包括安装软件和执行 MDM(移动设备管理)迁移。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet