Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
SSRF via unvalidated WWW-Authenticate realm in docker_pull module
Vulnerability Description
The docker_pull module uses the realm parameter from a Docker registry's WWW-Authenticate response header as the authentication endpoint without validation. An attacker in a man-in-the-middle position between bbot and a Docker registry could modify this header to redirect the authentication request to an arbitrary endpoint, potentially leaking authentication tokens.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
Vulnerability Type
服务端请求伪造(SSRF)
Vulnerability Title
Black Lantern Security BBOT 服务端请求伪造漏洞
Vulnerability Description
Black Lantern Security BBOT是Black Lantern Security公司开源的一个递归互联网扫描器。 Black Lantern Security BBOT 2.8.4及之前版本存在服务端请求伪造漏洞,该漏洞源于docker_pull模块未对Docker注册表的WWW-Authenticate响应标头中的realm参数进行验证,可能允许中间人攻击者修改该标头将身份验证请求重定向到任意端点,从而导致身份验证令牌泄露。
CVSS Information
N/A
Vulnerability Type
N/A