在 invariant-systems-ai aiir 1.7.0 及更早版本中发现了一个缺陷。受影响的是“策略网关处理器”(Policy Gate Handler)组件中的一个未知函数。执行某种操纵可能导致对加密签名的验证不正确。该漏洞可以被远程利用。建议升级受影响的组件。该项目所在的 GitHub 仓库目前已不再可用。此漏洞仅影响由维护者停止支持的产品。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| invariant-systems-ai | aiir | 1.0 |
affected |
1.1 |
affected | ||
1.2 |
affected | ||
1.3 |
affected | ||
1.4 |
affected | ||
1.5 |
affected | ||
1.6 |
affected | ||
1.7.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| invariant-systems-ai | aiir | 1.0 |
cpe:2.3:a:invariant-systems-ai:aiir:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet