Malcolm 中的 Arkime 实时捕获服务(arkime-live)以 network_mode: host 模式运行,暴露了所有网络接口上的端口 8005(viewHost=0.0.0.0)。Arkime 信任来自任何 IP 地址的 X-Forwarded-User 头(userAuthIps=::,0.0.0.0/0),并自动创建具有完全访问权限的用户。密码秘钥(passwordSecret)被硬编码为公开值 "Malcolm"。网络相邻的攻击者可以通过直接连接到端口 8005 并使用伪造的身份头,绕过
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-107333 | 8.1 HIGH | Incorrect Authorization in Malcolm |
| CVE-2026-107362 | 7.1 HIGH | Server-Side Request Forgery in Malcolm |
| CVE-2026-107337 | 7.1 HIGH | Cross-Site Request Forgery in Malcolm |
| CVE-2026-107336 | 6.5 MEDIUM | Authentication Bypass by Spoofing in Malcolm |
| CVE-2026-107335 | 6.5 MEDIUM | Improper Handling of Highly Compressed Data in Malcolm |
| CVE-2026-107334 | 5.4 MEDIUM | Incorrect Authorization in Malcolm |
No comments yet