Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Rocket.Chat <8.3.0, <8.2.1, <8.1.2, <8.0.3, <7.13.5, <7.12.6, <7.11.6, and <7.10.9, a NoSQL injection vulnerability can lead to account takeover of the first user with a generated token when an OAuth app is configured.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Rocket.Chat SQL注入漏洞
Vulnerability Description
Rocket.Chat是Rocket.Chat公司的一个聊天软件。 Rocket.Chat 8.3.0之前版本、8.2.1之前版本、8.1.2之前版本、8.0.3之前版本、7.13.5之前版本、7.12.6之前版本、7.11.6之前版本和7.10.9之前版本存在SQL注入漏洞,该漏洞源于NoSQL注入,可能导致配置OAuth应用时第一个具有生成令牌的用户账户被接管。
CVSS Information
N/A
Vulnerability Type
N/A