在版本 2.2.0 至 2.2.1 的 PLANKA 中,POST /api/access-tokens/verify-totp 接口未对提交的错误 TOTP(基于时间的一次性密码)进行数量限制,导致攻击者可以暴力破解二次认证代码。如果攻击者已知某用户的密码,他们可以重复使用等待期内的十分钟有效令牌,对六位数字的一次性密码进行穷举尝试,直到成功获取完整的访问令牌。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet