LinuxServer Heimdall 2.8.3 及之前版本中,其 SafeUrlFetcher SSRF 防护机制仅应用于 ItemController;而增强型应用程序测试和实时统计请求则通过 SupportedApps::execute() 发起,该方法使用 GuzzleHttp 客户端,且缺乏 IP 地址限制。在部分实际部署环境中,POST /test_config 和 GET /get_stats 接口可能因 CSRF 漏洞被间接利用,从而导致未认证的攻击者能够强制服务器向任意内部主机和端口(包括 1
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| linuxserver | Heimdall | 0 ~ 2.8.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet