脆弱性情報
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
脆弱性タイトル
FastGPT: NoSQL Injection in updatePasswordByOld Leads to Account Takeover
脆弱性説明
FastGPT is an AI Agent building platform. In versions prior to 4.14.9.5, the password change endpoint is vulnerable to NoSQL injection. An authenticated attacker can bypass the "old password" verification by injecting MongoDB query operators. This allows an attacker who has gained a low-privileged session to change the password of their account (or others if combined with ID manipulation) without knowing the current one, leading to full account takeover and persistence. This issue has been fixed in version 4.14.9.5.
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
脆弱性タイプ
数据查询逻辑中特殊元素的不当中和
脆弱性タイトル
FastGPT 安全漏洞
脆弱性説明
FastGPT是labring开源的一款基于大语言模型的开源知识库问答系统。 FastGPT 4.14.9.5之前版本存在安全漏洞,该漏洞源于密码更改端点容易受到NoSQL注入攻击,可能导致经过身份验证的攻击者通过注入MongoDB查询运算符绕过旧密码验证,从而完全接管账户。
CVSS情報
N/A
脆弱性タイプ
N/A