Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Exemys Telemetry Web Server relies on an HTTP Location header to indicate that a client is unauthorized, which allows remote attackers to bypass intended access restrictions by disregarding this header and processing the response body.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Exemys Telemetry Web Server 信息泄露漏洞
Vulnerability Description
Exemys Telemetry Web Server是阿根廷Exemys公司的一套基于Web的SCADA系统。 Exemys Telemetry Web Server中存在安全漏洞,该漏洞源于程序依赖HTTP Location头确定客户端是否经过身份验证。远程攻击者可通过忽略HTTP Location头并处理该响应体利用该漏洞绕过既定的访问限制。
CVSS Information
N/A
Vulnerability Type
N/A