Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in AUO Solar Data Recorder before 1.3.0. The web portal uses HTTP Basic Authentication and provides the account and password in the WWW-Authenticate attribute. By using this account and password, anyone can login successfully.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
AU Optronics Solar Data Recorder 授权问题漏洞
Vulnerability Description
AU Optronics Solar Data Recorder是中国台湾AU Optronics公司的一款光伏数据记录器。 AU Optronics Solar Data Recorder 1.3.0之前版本中存在安全漏洞,该漏洞源于Web门户使用了HTTP基本接入认证并将用户密码和用户名以明文形式显示在WWW-Authenticate属性中。攻击者可利用该漏洞获取密码和用户名,进而进行登录。
CVSS Information
N/A
Vulnerability Type
N/A