在 GitHub Enterprise Server 中识别出一个服务器端请求伪造(SSRF)漏洞,该漏洞允许仓库贡献者诱导设备向攻击者控制的内部主机发起请求,此漏洞可被链式利用以在设备上实现远程代码执行。针对 GCP 服务账户凭据的秘密扫描验证器未对提交凭据中嵌入的令牌端点目的地进行限制,盲目信任并直接向其发起请求。利用该漏洞需要用户具备身份认证权限,并有权限向启用了 GitHub Advanced Security 和秘密扫描有效性检查的非默认配置实例中的仓库推送内容。此漏洞影响了 GitHub Enterpr
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| GitHub | Enterprise Server | 3.20.0< 3.20.* |
affected |
3.21.0< 3.21.* |
affected | ||
3.22.0< 3.22.* |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| GitHub | Enterprise Server | 3.20.0 ~ 3.20.* | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet