surya 0.22.1 版本的 screenshot 服务中存在一个未认证的任意文件读取漏洞,该漏洞存在于接受原始 参数的 、 和 路由中。攻击者可以通过向 或 提供任意文件路径,读取主机上的任意图像或 PDF 文件,获取以 base64 编码的渲染内容,并利用 路由作为文件存在的预言机(existence oracle)。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| datalab-to | surya | ≤ 0.22.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| datalab-to | surya | 0 ~ 0.22.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet