Sipeed PicoClaw
- <= 0.2.9
A cross-site request forgery (CSRF) vulnerability has been identified in Sipeed PicoClaw versions through 0.2.9. The issue arises in the launcher authentication setup endpoint, which is publicly accessible during the initial setup phase. The endpoint lacks proper validation of origin headers, allowing remote attackers to manipulate the setup process and gain control over the user's PicoClaw launcher.
Exploitation of this vulnerability allows an attacker to set a dashboard password on behalf of the victim, enabling access to the PicoClaw launcher dashboard. This access includes control over the gateway lifecycle, runtime configuration, model and provider credential management, and other privileged launcher features.
To reproduce this vulnerability, upload a malicious webpage that sends a cross-site POST request to the PicoClaw launcher's setup endpoint. Include headers that bypass the same-origin policy, such as 'Origin', 'Referer', and 'Sec-Fetch-Site'. When the request is accepted, the attacker-chosen password will be set, allowing for unauthorized access to the launcher's administrative features.
Users are advised to update to the patched version of Sipeed PicoClaw, which is available on the official GitHub Releases page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.