Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ECESSA ShieldLink SL175EHQ 10.7.4 devices have CSRF to add superuser accounts via the cgi-bin/pl_web.cgi/util_configlogin_act URI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ECESSA ShieldLink SL175EHQ 跨站请求伪造漏洞
Vulnerability Description
ECESSA ShieldLink SL175EHQ是美国ECESSA公司的一款广域网链路控制器,它包括ISP/WAN链路汇聚、负载均衡和流量监控等功能。 ECESSA ShieldLink SL175EHQ 10.7.4版本中存在跨站请求伪造漏洞。远程攻击者可借助cgi-bin/pl_web.cgi/util_configlogin_act URI利用该漏洞添加超级用户账户。
CVSS Information
N/A
Vulnerability Type
N/A