Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Utils::runScripts function in src/utils.cpp in vdccm 0.92 through 0.10.0 in SynCE (SynCE-dccm) allows remote attackers to execute arbitrary commands via shell metacharacters in a certain string to TCP port 5679.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SynCE vdccm守护程序远程命令注入漏洞
Vulnerability Description
SynCE是一个开源软件包,允许UNIX用户将计算机同步到基于Windows Mobile和Windows CE的设备上。 SynCE软件包处理用户请求时存在漏洞,远程攻击者可能利用此漏洞在服务器执行任意命令。 SynCE软件包所安装的vdccm守护程序在5679端口上监听Windows CE设备的入站连接,而所连接设备的名称可能会导致命令注入。以下是src/utils.cpp文件的Utils::runScripts函数中的漏洞代码: string command = string(path) + ""
CVSS Information
N/A
Vulnerability Type
N/A