Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the back-end component in Huawei UTPS 1.0 allows local users to gain privileges via a long IDS_PLUGIN_NAME string in a plug-in configuration file.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Huawei UTPS后台软件缓冲区溢出漏洞
Vulnerability Description
Huawei UTPS是中国华为(Huawei)公司的一款运行于PC上的管理数据卡的应用软件,它提供数据卡的设置、拨号连接、收发短信、管理电话本等功能。 Huawei UTPS 1.0版本中的back-end组件中存在缓冲区溢出漏洞,该漏洞源于拷贝字符串(IDS_PLUGIN_NAME)时对传入参数验证不够充分,导致调用堆栈溢出。本地攻击者可能执行恶意用户指定的脚本,从而打开一个恶意用户指定的应用程序。
CVSS Information
N/A
Vulnerability Type
N/A