IBM Enterprise 版本的 Quarkus(版本范围:3.27.1 至 3.27.5,以及 3.33.1 至 3.33.3)中,由于将不可信的查询字符串输入中的值映射错误,攻击者可能通过操纵 URL 查询参数来绕过授权检查。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Enterprise Build of Quarkus | 3.27.1 ~ 3.27.5 |
cpe:2.3:a:ibm:enterprise_build_of_quarkus:3.27.1:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet