MicroRealEstate MicroRealEstate是MicroRealEstate公司的一款房地产行业的企业应用软件。 MicroRealEstate 1.0.0-alpha3及之前版本存在安全漏洞,该漏洞源于对象级访问控制存在缺陷以及随机ID生成使用确定性模式,导致攻击者能够在未经授权的情况下访问房东或租户上传的文档。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| MicroRealEstate | MicroRealEstate | ≤ 1.0.0-alpha3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| MicroRealEstate | MicroRealEstate | 0 ~ 1.0.0-alpha3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-57867 | MicroRealEstate 授权问题漏洞 | |
| CVE-2026-57870 | MicroRealEstate 授权问题漏洞 | |
| CVE-2026-57868 | MicroRealEstate 授权问题漏洞 | |
| CVE-2026-57871 | MicroRealEstate 路径遍历漏洞 |
No comments yet