Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
kotaemon 0.12.0 Unauthenticated Remote Code Execution via Insecure Deserialization
Vulnerability Description
kotaemon through 0.12.0 contains an insecure deserialization vulnerability in the check_connection endpoint that allows unauthenticated attackers to instantiate arbitrary Python classes by supplying crafted YAML/JSON input with a __type__ field. Attackers can exploit this to override the __type__ field with subprocess.check_output and arbitrary arguments, achieving remote code execution with application process privileges.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
可信数据的反序列化
Vulnerability Title
Cinnamon kotaemon 反序列化漏洞
Vulnerability Description
Cinnamon kotaemon是Cinnamon组织开源的一个文档协作与问答平台。 Cinnamon kotaemon 0.12.0及之前版本存在反序列化注入漏洞,该漏洞源于check_connection端点存在不安全的反序列化问题,允许未经验证的攻击者通过提供带有__type__字段的特制YAML/JSON输入实例化任意Python类,将__type__字段覆盖为subprocess.check_output和任意参数,从而导致远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A