Description
在Pterodactyl Panel 中,允许未经身份验证的攻击者执行任意代码。攻击者可以通过访问 /locales/locale.json 接口,并利用locale 和 namespace 参数注入恶意代码。该漏洞利用的有效性较高,因为根据描述可以未经身份验证执行任意代码
在Pterodactyl Panel 中,允许未经身份验证的攻击者执行任意代码。攻击者可以通过访问 /locales/locale.json 接口,并利用locale 和 namespace 参数注入恶意代码。该漏洞利用的有效性较高,因为根据描述可以未经身份验证执行任意代码
None yet. Search at https://trap.biu.life/?ref=rss