Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3xq5-x4fj-rff7

Опубликовано: 20 мар. 2025
Источник: github
Github: Прошло ревью
CVSS3: 9.1

Описание

DB-GPT vulnerable to Arbitrary File Upload with Path Traversal

In eosphoros-ai/db-gpt version v0.6.0, the web API POST /v1/personal/agent/upload is vulnerable to Arbitrary File Upload with Path Traversal. This vulnerability allows unauthorized attackers to upload arbitrary files to the victim's file system at any location. The impact of this vulnerability includes the potential for remote code execution (RCE) by writing malicious files, such as a malicious __init__.py in the Python's /site-packages/ directory.

Пакеты

Наименование

dbgpt

pip
Затронутые версииВерсия исправления

<= 0.6.0

Отсутствует

EPSS

Процентиль: 87%
0.03262
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-22
CWE-73

Связанные уязвимости

CVSS3: 9.8
nvd
11 месяцев назад

In eosphoros-ai/db-gpt version v0.6.0, the web API `POST /v1/personal/agent/upload` is vulnerable to Arbitrary File Upload with Path Traversal. This vulnerability allows unauthorized attackers to upload arbitrary files to the victim's file system at any location. The impact of this vulnerability includes the potential for remote code execution (RCE) by writing malicious files, such as a malicious `__init__.py` in the Python's `/site-packages/` directory.

EPSS

Процентиль: 87%
0.03262
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-22
CWE-73