漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
SiYuan before v3.7.3 Path Traversal via unvalidated avID
Vulnerability Description
SiYuan versions before v3.7.3 fail to validate the avID parameter on all code branches in attribute-view read endpoints, allowing attackers to construct traversal paths that escape the storage directory. Authenticated users with RoleReader permissions or anonymous clients when publish authentication is disabled can read JSON files outside the attribute-view directory to disclose cross-scope database content.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Vulnerability Title
SiYuan 路径遍历漏洞
Vulnerability Description
SiYuan是SiYuan团队开源的一款文档管理软件。 SiYuan v3.7.3之前版本存在路径遍历漏洞,该漏洞源于未验证attribute-view读取端点中所有代码分支的avID参数,导致攻击者构造遍历路径绕过存储目录,具有RoleReader权限的认证用户或在发布认证禁用时的匿名客户端可读取属性视图目录外的JSON文件,泄露跨范围数据库内容。
CVSS Information
N/A
Vulnerability Type
N/A