DIRAC 是一个“中间件”(interware),即用于分布式计算环境的软件框架。在 8.0.79、9.0.22 和 9.1.10 版本之前, 文件中的 函数会将经过身份验证但由调用者控制的 参数传递给 文件中的 函数。如果该参数的值未被识别,系统会尝试将其作为 Python 代码对 Request 对象进行解析和执行。攻击者可利用精心构造的双下划线(dunder)属性表达式(如 等链式调用)访问操作系统层面的函数,从而在以 DIRAC 服务运行账户权限下执行任意命令。 成功利用该漏洞可能导致以下后果: 泄露 配
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-61667 | 9.9 CRITICAL | DIRAC: RCE in FileCatalog DatasetManager via SQL injection + eval |
| CVE-2026-61668 | 8.1 HIGH | DIRAC: Pilot code downloaded over unverified HTTPS connection |
No comments yet