References https://comate.baidu.com/zh/page/hnh002brg2j https://ask.csdn.net/questions/9116642 https://www.cnblogs.com/haiyoyo/p/18563403 https://blog.csdn.net/weixin_33670786/article/details/159704374 https://s4e.io/tools/alert-manager-unauthenticated-access-scanner https://cloud.tencent.com/developer/ask/sof/107620337 https://prometheus.io/docs/alerting/latest/https/ https://nvd.nist.gov/vuln/detail/CVE-2023-40577
Related VulnerabilitiesPoCseaweedfs-unauth: SeaweedFS Filer - Unauthenticated AccessPoCmarimo-unauth: motionEye Partial - Authentication BypassPoClaravel-nova-unauth: Laravel Nova - Unauthenticated Admin Panel AccessPoClaravel-pulse-unauth: Laravel Pulse - Unauthenticated Dashboard AccessPoCpuppetdb-dashboard-unauth: PuppetDB Dashboard - Unauthenticated AccessPoCargo-workflows-unauth: Argo Workflows - Unauthenticated DashboardPoCnode-red-unauth: Node-RED - Unauthenticated AccessPoCchroma-db-unauth: Chroma DB - Information DisclosurePoCjboss-jmx-console-unauth: JBoss JMX Console - Unauthenticated Accessdruid-monitor-unauth: Druid Monitor Unauthetcd-unauth: ETCD Unauthspringboot-actuator-unauth: Springboot Actuator Unauthdocker-registry-api-unauth: docker registry api 未经批准