Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
MiCasaVerde VeraLite with firmware 1.5.408 does not properly restrict access, which allows remote authenticated users to (1) update the firmware via the squashfs parameter to upgrade_step2.sh or (2) obtain hashed passwords via the cgi-bin/cmh/backup.sh page.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MiCasaVerde VeraLite 安全漏洞
Vulnerability Description
Mi Casa Verde VeraLite是中国香港Mi Casa Verde公司的一套家用网关控制器设备。该设备可通过电脑或手机,对家庭Wi-Fi网络所连接的家电进行控制。 使用1.5.408版本固件的MiCasaVerde VeraLite中存在安全漏洞,该漏洞源于程序没有正确限制访问。攻击者可利用该漏洞提升权限。
CVSS Information
N/A
Vulnerability Type
N/A