Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In MIELE XGW 3000 ZigBee Gateway before 2.4.0, a malicious website visited by an authenticated admin user or a malicious mail is allowed to make arbitrary changes in the "admin panel" because there is no CSRF protection.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MIELE XGW 3000 ZigBee Gateway 安全漏洞
Vulnerability Description
MIELE XGW 3000 ZigBee Gateway 2.4.0之前版本中存在安全漏洞。攻击者可借助恶意的网站利用该漏洞在管理仪表盘中进行任意修改。
CVSS Information
N/A
Vulnerability Type
N/A