HortusFox(hortusfox-web)6.2 版本之前存在一个 SQL 注入漏洞,允许 API 令牌持有者通过向 /api/locations/list 端点提供构造的 include_info 参数来注入 SQL 语句。攻击者可以在 include_info 中放置子查询,这些子查询会被 PlantsModel::getSpecificInfo() 方法拼接到列列表中,从而读取任意数据库表中的数据,包括用户密码哈希。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| danielbrendel | hortusfox-web | < 6.2 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| danielbrendel | hortusfox-web | 0 ~ 6.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet