漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Flowsint: Broken Access Control allows modification of investigation metadata from any user
Vulnerability Description
Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, an adversary with knowledge of an investigation ID, could update the metadata of an investigation of another user. This vulnerability is fixed in 1.2.3.
CVSS Information
N/A
Vulnerability Type
访问控制不恰当
Vulnerability Title
Flowsint 访问控制错误漏洞
Vulnerability Description
Flowsint是reconurge开源的一个开源情报图形化调查工具。 Flowsint 1.2.3之前版本存在访问控制错误漏洞,该漏洞源于知道调查ID的攻击者可更新其他用户的调查元数据。
CVSS Information
N/A
Vulnerability Type
N/A