Belden Hirschmann HiOS是美国Belden公司的一个工业以太网交换机操作系统。 Belden Hirschmann HiOS 08.1.00之前版本和07.1.01之前版本存在输入验证错误漏洞,该漏洞源于EtherNet/IP栈中数据包长度字段处理不当,可能导致远程拒绝服务攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Belden | Hirschmann HiOS | >= 08.1.00 |
unaffected |
>= 07.1.01 |
unaffected | ||
05.00.00≤ 08.0.00 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Belden | Hirschmann HiOS | >= 08.1.00 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-20237 | 9.8 CRITICAL | Hirschmann Industrial HiVision Authentication Bypass Remote Code Execution |
| CVE-2018-25237 | 9.8 CRITICAL | Hirschmann HiSecOS Buffer Overflow via HTTPS Login |
| CVE-2018-25236 | 9.8 CRITICAL | Hirschmann HiOS HiSecOS Authentication Bypass via HTTP Management |
| CVE-2017-20234 | 9.8 CRITICAL | GarrettCom Magnum 6K and 10K Authentication Bypass via Hardcoded String |
| CVE-2021-4477 | 9.1 CRITICAL | Hirschmann HiLCOS OpenBAT BAT450 IPv6 IPsec Firewall Bypass |
| CVE-2015-10148 | 8.2 HIGH | Hirschmann HiLCOS Hard-coded Credentials SSH SSL Keys |
| CVE-2016-15058 | 8.1 HIGH | Hirschmann HiLCOS Classic Platform Password Exposure via SNMP |
| CVE-2022-4987 | 7.3 HIGH | Hirschmann Industrial HiVision External Application Path Hijacking Leading to Arbitrary Co |
| CVE-2017-20238 | 7.1 HIGH | Hirschmann Industrial HiVision Improper Authorization Privilege Escalation |
| CVE-2017-20233 | 5.4 MEDIUM | Hirschmann HiLCOS Layer-2 Firewall Multicast Broadcast Traffic Bypass |
No comments yet