漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered on Systrome Cumilon ISG-600C, ISG-600H, and ISG-800W devices with firmware V1.1-R2.1_TRUNK-20181105.bin. A shell command injection occurs by editing the description of an ISP file. The file network/isp/isp_update_edit.php does not properly validate user input, which leads to shell command injection via the des parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SYSTORME ISG-600C、ISG-600H和ISG-800W 命令注入漏洞
Vulnerability Description
SYSTORME ISG-600C等都是印度SYSTORME公司的一款集成安全网关设备。 SYSTORME ISG-600C、ISG-600H和ISG-800W中存在命令注入漏洞,该漏洞源于程序没有正确地验证用户输入。攻击者可借助‘des’参数利用该漏洞注入shell命令。
CVSS Information
N/A
Vulnerability Type
N/A