脆弱性情報
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
脆弱性タイトル
zevorn rt-claw http_request net.c claw_net_post information disclosure
脆弱性説明
A vulnerability was found in zevorn rt-claw up to 0.2.0. Affected is the function claw_net_get/claw_net_post of the file claw/services/tools/net.c of the component http_request. The manipulation results in information disclosure. The attack can be executed remotely. The exploit has been made public and could be used. The project was informed of the problem early through an issue report but has not responded yet.
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
脆弱性タイプ
信息暴露
脆弱性タイトル
Zevorn RT-Claw 信息泄露漏洞
脆弱性説明
Zevorn RT-Claw是中国Zevorn个人开发者开源的一款面向嵌入式设备的智能助手。 Zevorn RT-Claw 0.2.0及之前版本存在安全漏洞,该漏洞源于http_request组件的文件claw/services/tools/net.c中函数claw_net_get/claw_net_post操作问题,可能导致信息泄露。
CVSS情報
N/A
脆弱性タイプ
N/A