Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The eSoft InstaGate EX2 UTM device does not require entry of the old password when changing the admin password, which might allow remote attackers to gain privileges by conducting a CSRF attack, making a password change from an unattended workstation, or other attacks.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
eSoft InstaGate EX2 UTM 驱动程序密码更改漏洞
Vulnerability Description
eSoft InstaGate EX2 UTM 驱动程序在更改管理密码的时候没有要求键入旧密码,这可能会允许远程攻击者通过执行一个CSRF攻击获得特权,在被忽略的工作站上进行密码更改或进行其它攻击。
CVSS Information
N/A
Vulnerability Type
N/A