在 NetBox 版本 2.9.5 到 4.7.0(不含 4.7.0)中,存在一个服务器端模板注入漏洞。该漏洞使得拥有“可添加自定义链接”权限的低权限用户,能够通过将原始的 Django HttpRequest 对象暴露给 Jinja2 模板上下文,窃取其他用户的会话 Cookie 和 API 令牌。 攻击者可以构造一个自定义链接模板,在其中嵌入 或某个用户的 API 令牌,并将其置于 img 标签的 src URL 中。这种做法会绕过 clean_html 清理器的过滤,在拥有更高权限的用户查看该对象时,自动将受
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| netbox-community | netbox | 2.9.5< 4.7.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| netbox-community | netbox | 2.9.5 ~ 4.7.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet