Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The webupgrade function on the Cohu 3960HD does not verify the firmware upgrade files or process, allowing an attacker to upload a specially crafted postinstall.sh file that will be executed with "root" privileges.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cohu 3960HD 安全漏洞
Vulnerability Description
Cohu 3960HD是美国Cohu公司的一款IP变焦摄像机,一般被用作交通摄像机。 Cohu 3960HD中的‘webupgrade’函数存在安全漏洞,该漏洞源于程序没有验证固件上传的文件或进程。攻击者可通过上传特制的postinstall.sh文件利用该漏洞以root权限执行该文件。
CVSS Information
N/A
Vulnerability Type
N/A