CVE-2024-31457

Source
https://nvd.nist.gov/vuln/detail/CVE-2024-31457
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-31457.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-31457
Aliases
Related
Published
2024-04-09T18:15:10Z
Modified
2025-01-08T13:04:10.135623Z
Summary
[none]
Details

gin-vue-admin is a backstage management system based on vue and gin, which separates the front and rear of the full stack. gin-vue-admin pseudoversion 0.0.0-20240407133540-7bc7c3051067, corresponding to version 2.6.1, has a code injection vulnerability in the backend. In the Plugin System -> Plugin Template feature, an attacker can perform directory traversal by manipulating the plugName parameter. They can create specific folders such as api, config, global, model, router, service, and main.go function within the specified traversal directory. Moreover, the Go files within these folders can have arbitrary code inserted based on a specific PoC parameter. The main reason for the existence of this vulnerability is the controllability of the PlugName field within the struct. Pseudoversion 0.0.0-20240409100909-b1b7427c6ea6, corresponding to commit b1b7427c6ea6c7a027fa188c6be557f3795e732b, contains a patch for the issue. As a workaround, one may manually use a filtering method available in the GitHub Security Advisory to rectify the directory traversal problem.

References

Affected packages

Git / github.com/flipped-aurora/gin-vue-admin

Affected ranges

Type
GIT
Repo
https://github.com/flipped-aurora/gin-vue-admin
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Fixed

Affected versions

V2.*

V2.3.1
V2.3.7
V2.4.4
V2.5.0b

v.*

v.2.3.41

v0.*

v0.9.0

v2.*

v2.0.0
v2.0.2
v2.0.3
v2.0.4
v2.1.0
v2.2.0
v2.3.0
v2.3.3
v2.3.31
v2.3.4
v2.3.5
v2.3.6
v2.3.8
v2.3.9
v2.4.0
v2.4.1
v2.4.2
v2.4.3
v2.4.4
v2.4.4-1
v2.4.5
v2.4.5Beta
v2.4.5RC
v2.4.6
v2.5.0
v2.5.0a
v2.5.1
v2.5.1b
v2.5.2
v2.5.3
v2.5.3b
v2.5.3beta
v2.5.4
v2.5.5
v2.5.6
v2.5.6-a
v2.5.7
v2.5.7-a
v2.5.8
v2.5.9
v2.5.9a
v2.6.0
v2.6.1
v2.6.2