SECUDOS DOMOS是德国SECUDOS公司的一套用于物联网设备的操作系统。Log是其中的一个日志模块。 SECUDOS DOMOS 5.6之前版本中的Log模块存在路径遍历漏洞。远程攻击者可借助特制URL请求利用该漏洞获取敏感信息或执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | SECUDOS DOMOS before 5.6 allows local file inclusion via the log module. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2019/CVE-2019-18665.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2019-14360 | Hyundai Pay Kasse HK-1000 信息泄露漏洞 | |
| CVE-2019-14358 | Archos Safe-T 信息泄露漏洞 | |
| CVE-2019-18673 | Shift Cryptosecurity BitBox02 信息泄露漏洞 | |
| CVE-2019-18668 | Currency Switcher addon for WooCommerce 输入验证错误漏洞 | |
| CVE-2019-18667 | pfSense freeradius3 package 跨站脚本漏洞 | |
| CVE-2019-18664 | SECUDOS DOMOS Log模块跨站脚本漏洞 | |
| CVE-2019-18662 | YouPHPTube SQL注入漏洞 | |
| CVE-2019-18661 | Fastweb FASTGate 信息泄露漏洞 | |
| CVE-2019-18659 | Wireless Emergency Alerts协议加密问题漏洞 |
No comments yet