漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
LimeSurvey SSRF via REST API Survey Template Host Header
Vulnerability Description
LimeSurvey through 6.17.10 and 7.0.4 contains a server-side request forgery vulnerability in the REST API survey template endpoint that allows authenticated users to cause the server to issue arbitrary HTTP requests by supplying a manipulated Host header. Attackers can exploit the unsanitized use of the HTTP Host header in the getTemplateData() function to reach internal network services, cloud metadata endpoints, and extract sensitive credentials such as IAM tokens from instance metadata services.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Vulnerability Type
服务端请求伪造(SSRF)
Vulnerability Title
LimeSurvey 服务端请求伪造漏洞
Vulnerability Description
LimeSurvey是LimeSurvey组织开源的一套开源的在线问卷调查程序,它支持调查程序开发、调查问卷发布以及数据收集等功能。 LimeSurvey 6.17.10及之前版本和7.0.4及之前版本存在服务端请求伪造漏洞,该漏洞源于REST API调查模板端点中未对HTTP Host标头进行清理,允许经过身份验证的攻击者通过提供特制的Host标头,使服务器发起任意HTTP请求,从而访问内部网络服务、云元数据端点,并提取敏感凭据如IAM令牌。
CVSS Information
N/A
Vulnerability Type
N/A