Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2024-24759 PoC — MindsDB 安全漏洞

Source
Associated Vulnerability
Title:MindsDB 安全漏洞 (CVE-2024-24759)
Description:MindsDB是MindsDB公司的一个新兴的低代码机器学习平台。 MindsDB v23.12.4.2之前版本存在安全漏洞,该漏洞源于攻击者可以通过DNS重新绑定绕过整个网站的服务器端请求伪造保护,还可能导致拒绝服务。
Description
Detects DNS rebinding vulnerability that allows bypass of SSRF protection. The vulnerability exists in the URL validation mechanism where DNS resolution is performed without considering DNS rebinding attacks.
File Snapshot

id: CVE-2024-24759 info: name: MindsDB -DNS Rebinding SSRF Protection Bypass author: Lee Changh ...
Shenlong Bot has cached this for you
Remarks
    1. It is advised to access via the original source first.
    2. If the original source is unavailable, please email f.jinxu#gmail.com for a local snapshot (replace # with @).
    3. Shenlong has snapshotted the POC code for you. To support long-term maintenance, please consider donating. Thank you for your support.