Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An exploitable vulnerability exists in the safe browsing function of the CUJO Smart Firewall, version 7003. The flaw lies in the way the safe browsing function parses HTTP requests. The server hostname is extracted from captured HTTP/HTTPS requests and inserted as part of a Lua statement without prior sanitization, which results in arbitrary Lua script execution in the kernel. An attacker could send an HTTP request to exploit this vulnerability.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CUJO Smart Firewall 代码注入漏洞
Vulnerability Description
CUJO Smart Firewall是美国CUJO公司的一款家庭智能防火墙设备。 使用7003版本固件的CUJO Smart Firewall中的安全浏览功能存在代码注入漏洞。攻击者可通过发送HTTP请求利用该漏洞在内核中执行任意的Lua脚本。
CVSS Information
N/A
Vulnerability Type
N/A