MaxKB Internal Network Access Vulnerability via Python Code Execution in Sandbox
Vulnerability
A vulnerability in MaxKB versions prior to 2.3.1 allows users to access internal network services, such as databases, through Python code executed in the tool module. Although this execution occurs within a sandbox environment, it still poses a significant risk.
Impact
Exploitation of this vulnerability could lead to unauthorized access to internal network services and databases.
Remediation
Users can upgrade to MaxKB version 2.3.1 or later to address this vulnerability.
Added: Nov 13, 2025, 4:23 PM
Updated: Nov 13, 2025, 4:23 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
1.9exploitability
5.2remediation
7.7relevance
1.1threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
