CVE-2023-47116
Label Studio SSRF on Import Bypassing `SSRF_PROTECTION_ENABLED` Protections
5.3
MEDIUM
CVSS 3.1
EPSS 0.74%
描述
Label Studio is a popular open source data labeling tool. The vulnerability affects all versions of Label Studio prior to 1.11.0 and was tested on version 1.8.2. Label Studio's SSRF protections that can be enabled by setting the `SSRF_PROTECTION_ENABLED` environment variable can be bypassed to access internal web servers. This is because the current SSRF validation is done by executing a single DNS lookup to verify that the IP address is not in an excluded subnet range. This protection can be bypassed by either using HTTP redirection or performing a DNS rebinding attack.
如何修補 CVE-2023-47116
要修補 CVE-2023-47116,請將受影響套件升級到下列已修補版本。
- —升級至 1.11.0 或更新版本
- —升級至 55dd6af4716b92f2bb213fe461d1ffbc380c6a64 或更新版本
CVE-2023-47116 正在被利用嗎?
低 — EPSS 為 0.7%,目前沒有觀察到大規模利用活動。
受影響套件(2)
- from 0, < 1.11.0
- from 0, < 55dd6af4716b92f2bb213fe461d1ffbc380c6a64 | from 0, < 1.11.0
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | MEDIUM5.3 | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |