Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2021-26622
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Genian NAC remote code execution vulnerability
Source: NVD (National Vulnerability Database)
Vulnerability Description
An remote code execution vulnerability due to SSTI vulnerability and insufficient file name parameter validation was discovered in Genian NAC. Remote attackers are able to execute arbitrary malicious code with SYSTEM privileges on all connected nodes in NAC through this vulnerability.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
输入验证不恰当
Source: NVD (National Vulnerability Database)
Vulnerability Title
Genians Genian NAC 代码注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Genians Genian NAC是韩国Genians公司的一款网络安全和访问控制软件。可帮助企业识别启用 IP 的设备、管理漏洞并检查设备配置以保护网络访问环境。 Genian NAC V5.0 Genian NAC Suite V5.0 Genian NAC Suite V4.0存在代码注入漏洞,该漏洞源于软件中文明名参数验证不足。攻击者可以利用该漏洞在 NAC 中的所有连接节点上执行具有 SYSTEM 权限的任意恶意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
Genians Co., LtdGenian NAC Suite V4.0 unspecified ~ 4.0.145.0831 -
Genians Co., LtdGenian NAC V5.0 & Genian NAC Suite V5.0 unspecified ~ 5.0.42.0827 -
II. Public POCs for CVE-2021-26622
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2021-26622
Please Login to view more intelligence information
IV. Related Vulnerabilities
V. Comments for CVE-2021-26622

No comments yet


Leave a comment