Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Rittal Chiller SK 3232-Series web interface as built upon Carel pCOWeb firmware A1.5.3 – B1.2.4. The authentication mechanism on affected systems does not provide a sufficient level of protection against unauthorized configuration changes. Primary operations, namely turning the cooling unit on and off and setting the temperature set point, can be modified without authentication.
CVSS Information
N/A
Vulnerability Type
关键功能的认证机制缺失
Vulnerability Title
Rittal Chiller SK 3232-Series 访问控制错误漏洞
Vulnerability Description
Rittal Chiller SK 3232-Series是德国威图(Rittal)公司的一款液体冷却设备。 Rittal Chiller SK 3232-Series中的Web接口存在访问控制错误漏洞,该漏洞源于身份验证机制未进行充分保护来阻止未授权的配置更改。在使用Carel pCOWeb(A1.5.3版本至B1.2.4版本固件)时,攻击者可利用该漏洞修改一些基本操作,例如打开或关闭制冷设备。
CVSS Information
N/A
Vulnerability Type
N/A