漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Logto: TOTP code can be replayed within the RFC 6238 validity window (one-time use violation)
Vulnerability Description
Logto is the modern, open-source auth infrastructure for SaaS and AI apps. Prior to 1.41.0, Logto's existing TOTP verification accepted a successfully used TOTP code again while the code remained inside the RFC 6238 acceptance window because the verifier used otplib's stateless check with window = 1 and did not persist or compare the accepted TOTP time-step counter. An attacker who has the victim's first factor and captures a live TOTP value can replay that value to satisfy MFA during the same acceptance window. This issue is fixed in version 1.41.0.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:N
Vulnerability Type
使用捕获-重放进行的认证绕过
Vulnerability Title
logto-io logto 授权问题漏洞
Vulnerability Description
logto-io logto是logto-io组织的一个身份认证和用户管理平台。 logto-io logto 1.41.0之前版本存在授权问题漏洞,该漏洞源于TOTP验证使用otplib的无状态检查且未持久化或比较接受的TOTP时间步计数器,导致在RFC 6238接收窗口内可重用已使用的TOTP代码,攻击者在拥有受害者第一因素并捕获实时TOTP值的情况下可重放该值绕过MFA。
CVSS Information
N/A
Vulnerability Type
N/A