漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
nextlevelbuilder GoClaw exec_approval.go ExecApprovalManager.CheckCommand incomplete blacklist
Vulnerability Description
A vulnerability was found in nextlevelbuilder GoClaw 3.11.3. Affected by this issue is the function ExecApprovalManager.CheckCommand of the file internal/tools/exec_approval.go. The manipulation results in incomplete blacklist. The attack can be executed remotely. The exploit has been made public and could be used.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
不完整的黑名单
Vulnerability Title
Next Level Builder GoClaw 输入验证错误漏洞
Vulnerability Description
Next Level Builder GoClaw是Next Level Builder个人开发者的一款云端数据抓取工具。 Next Level Builder GoClaw 3.11.3版本存在输入验证错误漏洞,该漏洞源于函数ExecApprovalManager.CheckCommand的文件internal/tools/exec_approval.go操作导致不完整黑名单,可能导致远程攻击。
CVSS Information
N/A
Vulnerability Type
N/A