目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1336

100%

CVE-2026-24516— Droplet Agent 安全漏洞

一分钟漏洞结论

影响对象
n/a n/a
利用判断
尚无明确在野利用证据,仍需结合暴露面评估
建议动作
优先检查厂商安全公告和参考链接中的修复版本;无法立即升级时,限制受影响服务暴露并加强监测。

Droplet Agent是美国DigitalOcean开源的一个用于管理和监控DigitalOcean Droplets的工具。 Droplet Agent 1.3.2及之前版本存在安全漏洞,该漏洞源于故障排除执行器组件处理元数据时未充分验证输入,可能导致能够控制元数据响应的攻击者注入并执行具有root权限的任意操作系统命令。

AI 预测 7.2 利用难度: 中等 EPSS 2.50% · P83
获取后续新漏洞提醒 登录后订阅

一、 漏洞 CVE-2026-24516 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
N/A
来源: CVE Program / CVE List V5
Vulnerability Description
A command injection vulnerability exists in DigitalOcean Droplet Agent through 1.3.2. The troubleshooting actioner component (internal/troubleshooting/actioner/actioner.go) processes metadata from the metadata service endpoint and executes commands specified in the TroubleshootingAgent.Requesting array without adequate input validation. While the code validates that artifacts exist in the validInvestigationArtifacts map, it fails to sanitize the actual command content after the "command:" prefix. This allows an attacker who can control metadata responses to inject and execute arbitrary OS commands with root privileges. The attack is triggered by sending a TCP packet with specific sequence numbers to the SSH port, which causes the agent to fetch metadata from http://169.254.169.254/metadata/v1.json. The vulnerability affects the command execution flow in internal/troubleshooting/actioner/actioner.go (insufficient validation), internal/troubleshooting/command/exec.go (direct exec.CommandContext call), and internal/troubleshooting/command/command.go (command parsing without sanitization). This can lead to complete system compromise, data exfiltration, privilege escalation, and potential lateral movement across cloud infrastructure.
来源: CVE Program / CVE List V5
CVSS Information
N/A
来源: CVE Program / CVE List V5
Vulnerability Type
N/A
来源: CVE Program / CVE List V5
Vulnerability Title
Droplet Agent 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Droplet Agent是美国DigitalOcean开源的一个用于管理和监控DigitalOcean Droplets的工具。 Droplet Agent 1.3.2及之前版本存在安全漏洞,该漏洞源于故障排除执行器组件处理元数据时未充分验证输入,可能导致能够控制元数据响应的攻击者注入并执行具有root权限的任意操作系统命令。
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD

受影响产品

厂商 产品 影响版本 CPE 订阅
- n/a n/a -

二、漏洞 CVE-2026-24516 的公开POC

# POC 描述 源链接 神龙链接
AI 生成 POC 高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2026-24516 的情报信息

登录查看更多情报信息。

CVE-2026-24516 补丁与修复 (3)

CVE-2026-24516 概念验证 (1)

同批安全公告 · n/a · 2026-03-23 · 共 20 条

CVE-2026-4599 9.1 CRITICAL jsrsasign 安全漏洞
CVE-2026-4601 8.7 HIGH jsrsasign 安全漏洞
CVE-2026-4598 7.5 HIGH jsrsasign 安全漏洞
CVE-2026-4602 7.5 HIGH jsrsasign 安全漏洞
CVE-2026-4600 7.4 HIGH jsrsasign 安全漏洞
CVE-2026-4603 5.9 MEDIUM jsrsasign 安全漏洞
CVE-2026-4587 3.7 LOW Hybridauth 信任管理问题漏洞
CVE-2024-46878 Tiki 安全漏洞
CVE-2025-52204 Znuny 安全漏洞
CVE-2024-46879 Tiki 安全漏洞
CVE-2024-51224 PHPGurukul Vehicle Record Management System 安全漏洞
CVE-2026-30006 XnSoft Nconvert 安全漏洞
CVE-2026-30007 XnSoft Nconvert 安全漏洞
CVE-2026-26829 OwnTone 安全漏洞
CVE-2026-26828 OwnTone 安全漏洞
CVE-2024-51222 PHPGurukul Vehicle Record Management System 安全漏洞
CVE-2024-51226 PHPGurukul Vehicle Record Management System 安全漏洞
CVE-2024-51223 PHPGurukul Vehicle Record Management System 安全漏洞
CVE-2024-51225 PHPGurukul Vehicle Record Management System 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-24516

暂无评论


发表评论