Pelican Panel 1.0.0-beta35 之前版本仅通过禁用的表单控件来强制实施启动时写入权限,而未进行服务器端的授权检查。拥有 startup.read 权限的攻击者可以构造 Livewire 状态更新,以触发 afterStateUpdated 回调函数,并修改启动命令、Docker 镜像和变量,从而在容器内执行任意命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet