Shopware 使用 Context 函数时易受 Twig 中的服务器端模板注入攻击 (CVE-2024-42356)

admin 2024-08-10 12:12:29 Ali_nvd 来源:ZONE.CI 全球网 0 阅读模式
Shopware 使用 Context 函数时易受 Twig 中的服务器端模板注入攻击 (CVE-2024-42356)

CVE编号

CVE-2024-42356

利用情况

暂无

补丁情况

N/A

披露时间

2024-08-08
漏洞描述
Shopware is an open commerce platform. Prior to versions 6.6.5.1 and 6.5.8.13, the `context` variable is injected into almost any Twig Template and allows to access to current language, currency information. The context object allows also to switch for a short time the scope of the Context as a helper with a callable function. The function can be called also from Twig and as the second parameter allows any callable, it's possible to call from Twig any statically callable PHP function/method. It's not possible as customer to provide any Twig code, the attacker would require access to Administration to exploit it using Mail templates or using App Scripts. Update to Shopware 6.6.5.1 or 6.5.8.13 to receive a patch. For older versions of 6.1, 6.2, 6.3 and 6.4 corresponding security measures are also available via a plugin.
解决建议
建议您更新当前系统或软件至最新版,完成漏洞的修复。
参考链接
https://github.com/shopware/core/commit/04183e0c02af3b404eb7d52c683734bfe0595038
https://github.com/shopware/core/commit/a784aa1cec0624e36e0ee4d41aeebaed40e0442f
https://github.com/shopware/shopware/commit/8504ba7e56e53add6a1d5b9d45015e3d899cd0ac
https://github.com/shopware/shopware/commit/e43423bcc93c618c3036f94c12aa29514da8cf2e
https://github.com/shopware/shopware/security/advisories/GHSA-35jp-8cgg-p4wj
CVSS3评分 N/A
  • 攻击路径 N/A
  • 攻击复杂度 N/A
  • 权限要求 N/A
  • 影响范围 N/A
  • 用户交互 N/A
  • 可用性 N/A
  • 保密性 N/A
  • 完整性 N/A
N/A
CWE-ID 漏洞类型
- avd.aliyun.com
weinxin
版权声明
本站原创文章转载请注明文章出处及链接,谢谢合作!
N/A Ali_nvd

N/A

N/ACVE编号 CVE-2024-41238利用情况 暂无补丁情况 N/A披露时间 2024-08-09漏洞描述A SQL injection vulne
评论:0   参与:  0