Belden Hirschmann HiLCOS OpenBAT等都是美国Belden公司的产品。Belden Hirschmann HiLCOS OpenBAT是一款工业级无线局域网设备。Belden Hirschmann HiLCOS BAT450是一款工业级无线局域网接入点设备。Belden Hirschmann HiLCOS BAT867是一款工业级无线局域网接入点设备。 Belden多款产品存在访问控制错误漏洞,该漏洞源于防火墙过滤功能在管理IP地址过滤禁用时无法正确过滤IPv4组播和广播流量,
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Belden | Hirschmann HiLCOS BAT867 | ≤ 9.14.5500-REL |
affected |
|
affected | ||
| Belden | Hirschmann HiLCOS OpenBAT, BAT450, WLC | ≤ 9.10.5126-REL |
affected |
≤ 9.12.5500-REL |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Belden | Hirschmann HiLCOS OpenBAT, BAT450, WLC | 0 ~ 9.10.5126-REL | - |
|
| Belden | Hirschmann HiLCOS BAT867 | 0 ~ 9.14.5500-REL | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-20237 | 9.8 CRITICAL | Hirschmann Industrial HiVision Authentication Bypass Remote Code Execution |
| CVE-2018-25237 | 9.8 CRITICAL | Hirschmann HiSecOS Buffer Overflow via HTTPS Login |
| CVE-2018-25236 | 9.8 CRITICAL | Hirschmann HiOS HiSecOS Authentication Bypass via HTTP Management |
| CVE-2017-20234 | 9.8 CRITICAL | GarrettCom Magnum 6K and 10K Authentication Bypass via Hardcoded String |
| CVE-2021-4477 | 9.1 CRITICAL | Hirschmann HiLCOS OpenBAT BAT450 IPv6 IPsec Firewall Bypass |
| CVE-2015-10148 | 8.2 HIGH | Hirschmann HiLCOS Hard-coded Credentials SSH SSL Keys |
| CVE-2016-15058 | 8.1 HIGH | Hirschmann HiLCOS Classic Platform Password Exposure via SNMP |
| CVE-2020-37216 | 7.5 HIGH | Hirschmann HiOS EtherNet/IP Stack Denial of Service |
| CVE-2022-4987 | 7.3 HIGH | Hirschmann Industrial HiVision External Application Path Hijacking Leading to Arbitrary Co |
| CVE-2017-20238 | 7.1 HIGH | Hirschmann Industrial HiVision Improper Authorization Privilege Escalation |
No comments yet