Anyquery 是构建在 SQLite 之上的 SQL 查询引擎。在 0.4.5 版本之前,拥有对受影响的 macOS 虚拟表进行 INSERT 或 UPDATE 权限的已认证用户,可以通过在传递给 的 AppleScript 或 JXA 源码中插入由 SQL 控制的 URL 来执行操作系统命令。具体而言,在 文件中, 通过 将 URL 插入脚本,而 使用 处理更新操作。如果 URL 中包含引号或换行符,就可能突破原有的字符串或属性记录边界,从而追加额外的脚本语句,进而在 macOS 主机上以 anyquery
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| anyquery | github.com/julien040/anyquery/plugins/brave | < 0.2.0 |
affected |
| anyquery | github.com/julien040/anyquery/plugins/chrome | < 0.2.0 |
affected |
| anyquery | github.com/julien040/anyquery/plugins/edge | < 0.2.0 |
affected |
| anyquery | github.com/julien040/anyquery/plugins/reminders | < 0.2.0 |
affected |
| anyquery | github.com/julien040/anyquery/plugins/safari | < 0.2.0 |
affected |
| julien040 | anyquery | < 0.4.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| julien040 | anyquery | < 0.4.5 | - |
|
| anyquery | github.com/julien040/anyquery/plugins/brave | < 0.2.0 | - |
|
| anyquery | github.com/julien040/anyquery/plugins/chrome | < 0.2.0 | - |
|
| anyquery | github.com/julien040/anyquery/plugins/edge | < 0.2.0 | - |
|
| anyquery | github.com/julien040/anyquery/plugins/reminders | < 0.2.0 | - |
|
| anyquery | github.com/julien040/anyquery/plugins/safari | < 0.2.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet