在 Eclipse Che 7.79.0 至 7.121.0 版本中,仪表板后端的 端点将调用者提供的 URL 直接用于发起出站 HTTP GET 请求,且未进行任何主机过滤。经过认证的用户可利用此服务器端请求伪造(SSRF)漏洞,读取来自内网地址的响应,包括云实例元数据服务(169.254.169.254)、回环接口、RFC-1918 私有地址段,以及集群内的 Kubernetes 服务。该漏洞未参考由运维人员配置的白名单( )。此漏洞已在 7.122.0 版本中修复,该版本新增了私有地址阻断、防止通过 IPv6
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Eclipse Foundation | Eclipse Che | 7.79.0 ~ 7.122.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet