脆弱性情報
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
脆弱性タイトル
N/A
脆弱性説明
A vulnerability has been identified in SIMATIC S7-1200 CPU family version 4 (All versions < V4.2.3). The web interface could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user, who must be authenticated to the web interface. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. This could allow the attacker to read or modify parts of the device configuration.
CVSS情報
N/A
脆弱性タイプ
跨站请求伪造(CSRF)
脆弱性タイトル
Siemens SIMATIC S7-1200 CPU family 跨站请求伪造漏洞
脆弱性説明
Siemens SIMATIC S7-1200 CPU系列4.2.3之前的4版本中存在跨站请求伪造漏洞。远程攻击者可通过诱使用户访问恶意的链接利用该漏洞执行该合法用户可允许的操作(读取或修改部分设备配置)。
CVSS情報
N/A
脆弱性タイプ
N/A