CNNVD-202602-1886 Information

CNNVD ID

CNNVD-202602-1886

CVE-2024-26477

  • CNNVD Published: 2026-02-11

Description (Chinese)

statping-ng是statping-ng开源的一个服务器监控软件。 statping-ng 0.91.0版本存在安全漏洞,该漏洞源于对oauth、amazon_sns、export等端点api参数的特制请求处理不当,可能导致敏感信息泄露。

Description (English)

statping-ng is a server monitoring software for the statping-ng open source. There is a security loophole in version statping-ng 0.91.0, which results from inappropriate handling of ad hoc requests for end-point api parameters such as oauth, amazon sns, and export, which may lead to the disclosure of sensitive information.

Vulnerability Type

其他

Affected Vendor

statping-ng

Published

2026-02-11

Last Modified

2026-02-24

References

https://github.com/Ev3rR3d/Statping_Poc https://github.com/Ev3rR3d/Statping_Poc/tree/main/CVE-2024-26477 https://github.com/statping-ng/statping-ng https://statping-ng.github.io/

Patch

https://statping-ng.github.io/install.html

Share on: