Open XDMoD是Center for Computational Research开源的一款用于管理高性能计算资源的开源工具。 Open XDMoD 11.0.3之前版本存在跨站脚本漏洞,该漏洞源于经过身份验证的攻击者可以将恶意JavaScript注入其用户配置文件并滥用密码重置功能发送链接到HTML页面,当受害者访问时,反射并执行未清理的有效载荷,可能导致凭据捕获和账户接管。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-45777 | Open XDMoD Vulnerable to Unauthenticated Remote Code Execution (RCE) via OS Command Inject | |
| CVE-2026-45776 | Open XDMoD has Broken Access Control via Client-Controlled Session Variable | |
| CVE-2026-45779 | Open XDMoD Vulnerable to Unauthenticated SQL Injection Leading to Full Database Compromise |
No comments yet