Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SUSE WebYaST before 1.2 0.2.63-0.6.1 allows remote attackers to modify the hosts list, and subsequently conduct man-in-the-middle attacks, via a crafted /host request on TCP port 4984.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SUSE WebYaST 主机列表修改信息泄露漏洞
Vulnerability Description
Novell SuSE WebYaST是美国Novell公司的一套基于Web的远程配置和管理工具。该工具可对已部署的软件应用程序映像或设备进行初始设置、远程管理等。 SUSE WebYaST 1.2 0.2.63-0.6.1之前版本中存在漏洞。通过在TCP端口为4984上特制的/host请求,远程攻击者利用该漏洞修改主机列表,进而进行中间人攻击。
CVSS Information
N/A
Vulnerability Type
N/A