Y4tacker / y4tacker.github.io

my websites
7 stars 1 forks source link

2024/06/23/year/2024/8/Apache-OFBiz-Authentication-Bypass-CVE-2024-38856/ #9

Open utterances-bot opened 1 month ago

utterances-bot commented 1 month ago

Apache OFBiz Authentication Bypass(CVE-2024-38856)

写在前面​ 自去年CVE-2023-51467爆出后,起初我是不太想再看这个系统了,但年初连续的三个权限绕过相关的CVE编号(CVE-2024-25065/CVE-2024-32113/CVE-2024-36104)又让我产生了好奇,随着对三个历史漏洞分析的过程中,我也发现这三个漏洞的影响面其实并没有特别严重

https://y4tacker.github.io/2024/06/23/year/2024/8/Apache-OFBiz-Authentication-Bypass-CVE-2024-38856/

Le1a commented 1 month ago

老师 我学会了!