Lara Dashboard 1.3.2 之前的版本未能正确验证对 post-builder(文章构建器)中图片和视频上传端点的访问权限,导致不具备内容管理权限的已认证账户也能上传文件。攻击者可以上传带有自定义扩展名的混合类型(polyglot)文件到公共 Web 根目录;如果部署环境允许执行所上传的文件类型,则攻击者可借此执行代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| laradashboard | laradashboard | 0 ~ 1.3.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-86437 | 7.2 HIGH | Lara Dashboard before 1.3.2 Incorrect Authorization in Core-Upgrade Archive Upload |
| CVE-2026-86438 | 7.2 HIGH | Lara Dashboard before 1.3.2 Missing Authorization in Marketplace Module Install Action |
No comments yet