Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A directory traversal vulnerability on Telos Z/IP One devices through 4.0.0r grants an unauthenticated individual root level access to the device's file system. This can be used to identify configuration settings, password hashes for built-in accounts, and the cleartext password for remote configuration of the device through the WebUI.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Telos Alliance Telos Z/Ip One 路径遍历漏洞
Vulnerability Description
Telos Alliance Telos Z/Ip One是美国Telos Alliance公司的一款单空间机架单元。用于远程广播的 1 Ru 机架式 Ip 编解码器。 Telos Alliance Telos Z/IP One 4.0.0r之前版本存在路径遍历漏洞,该漏洞源于软件缺少对于目录参数和特殊字符的过滤和转义。这允许授予未经身份验证的个人根级别访问设备的文件系统。这可以用来识别配置设置,内置帐户的密码哈希值,以及通过web界面对设备进行远程配置的明文密码。
CVSS Information
N/A
Vulnerability Type
N/A