Exterro FTK Imager 在 8.3 版本之前存在 XML 外部实体(XXE)注入漏洞。攻击者可以通过在 UFDR ZIP 证据项内的 Report.xml 文件中嵌入恶意外部实体引用和攻击者可控的 XSLT 样式表,从而读取宿主机文件系统中的任意文件。攻击者可以构造一个恶意的 UFDR 归档文件;当检查员预览该文件时,XML 解析器会解析 file:// 外部实体引用,并在外部样式表中执行 msxsl:script,从而通过生成的图像 URL 将解析后的文件内容泄露至攻击者控制的端点。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Exterro | FTK Imager | < 8.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Exterro | FTK Imager | 0 ~ 8.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet