Lara Dashboard 在 1.3.0 版本之前存在一个认证绕过漏洞,位于 screenshot-login 路由中。当 非 production(生产环境)时,未认证的攻击者可以通过该路由以任意用户的邮箱身份进行认证。具体而言,攻击者只需向 端点发送请求(其中 为已注册的邮箱地址),即可获得一个完全认证的会话,从而访问用户管理、系统设置、数据库内容,并通过模块安装器执行任意代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| laradashboard | laradashboard | < 1.3.0 |
affected |
1.3.0 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| laradashboard | laradashboard | 0 ~ 1.3.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet