云虫漏洞库

CVE-2026-57469 - Nozomi Networks Labs identified a CWE-352: Cross-Site Request Forgery (CSRF) vulnerability in the web-based configuration backend of KUNBUS PiCtory in version 2.16.0 that allows a remote unauthenticated attacker to perform state-changing operations in the context of an authenticated operator, including deletion of project and configuration files and reset of the control runtime, by inducing the victim's browser to submit crafted requests. - 漏洞详情

漏洞编号:CVE-2026-57469

风险等级:未知

漏洞来源:CVE

CVE 编号:CVE-2026-57469

CNNVD 编号:-

厂商/产品:- / -

影响范围:-

CWE:CWE-352

发布/更新时间:2026-08-14 / 2026-08-28

漏洞描述

Nozomi Networks Labs identified a CWE-352: Cross-Site Request Forgery (CSRF) vulnerability in the web-based configuration backend of KUNBUS PiCtory in version 2.16.0 that allows a remote unauthenticated attacker to perform state-changing operations in the context of an authenticated operator, including deletion of project and configuration files and reset of the control runtime, by inducing the victim's browser to submit crafted requests.

相关链接

相关漏洞

« 返回首页