NocoDB 漏洞列表
共找到 6 个与 NocoDB 相关的漏洞
📅 加载漏洞趋势中...
-
CVE-2023-35843: NocoDB Arbitrary File Read POC
NocoDB through 0.106.0 (or 0.109.1) has a path traversal vulnerability that allows an unauthenticated attacker to access arbitrary files on the server by manipulating the path parameter of the /download route. This vulnerability could allow an attacker to access sensitive files and data on the server, including configuration files, source code, and other sensitive information Fofa: title=="NocoDB" -
CVE-2023-35843: NocoDB version <= 0.106.1 - Arbitrary File Read POC
NocoDB through 0.106.1 has a path traversal vulnerability that allows an unauthenticated attacker to access arbitrary files on the server by manipulating the path parameter of the /download route. This vulnerability could allow an attacker to access sensitive files and data on the server, including configuration files, source code, and other sensitive information. -
NocoDB /download/ 文件读取漏洞 无POC
NocoDB存在任意文件读取漏洞,攻击者可以利用该漏洞读取NocoDB上文件,进行后续利用。 -
Nocodb服务端请求伪造漏洞 无POC
-
NocoDB 任意文件下载漏洞 无POC
-
NocoDB存在路径遍历漏洞(CVE-2023-35843) 无POC
NocoDB是Airtable的开源替代品,将 MySQL、PostgreSQL、SQL Server、SQLite 或 MariaDB转换为智能电子表格,该系统0.106.0(或0.109.1)版本存在目录遍历漏洞