安全漏洞 >flask-cors 安全漏洞
Flask-CORS是Flask的跨源资源共享组件。 flask-cors 存在安全漏洞,该漏洞源于日志输出中和不当,允许攻击者破坏日志文件,可能掩盖其他攻击的踪迹、混淆日志处理工具以及伪造日志条目。
来源:media.defcon.org
链接:https://media.defcon.org/DEF%20CON%2031/DEF%20CON%2031%20presentations/Ryan%20Johnson%20Mohamed%20Elsabagh%20Angelos%20Stavrou%20-%20Still%20Vulnerable%20Out%20of%20the%20Box%20Revisiting%20the%20Security%20of%20Prepaid%20Android%20Carrier%20Devices.pdf
CNNVD