Open XDMoD是Center for Computational Research开源的一款用于管理高性能计算资源的开源工具。 Open XDMoD 9.5.0版本至11.0.2版本存在操作系统命令注入漏洞,该漏洞源于允许攻击者在托管Open XDMoD的Web服务器上远程执行任意系统命令,可能导致读取或修改应用程序数据、更改系统配置或中断服务可用性。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-45776 | Open XDMoD has Broken Access Control via Client-Controlled Session Variable | |
| CVE-2026-45779 | Open XDMoD Vulnerable to Unauthenticated SQL Injection Leading to Full Database Compromise | |
| CVE-2026-45778 | Open XDMoD Vulnerable to Reflected Cross-Site Scripting (XSS) in Password Reset |
No comments yet