FatPipe是美国FatPipe公司的一种 WAN 冗余技术,它为公司提供自动和动态故障转移,因为广域网组件或服务故障导致数据线连接中断。 FatPipe WARP, IPVPN和MPVPN 10.1.2r60p91 和 10.2.2r42之前版本存在安全漏洞,该漏洞源于软件的web管理界面中缺少授权。攻击者可利用该漏洞创建具有管理权限的帐户
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-27856 | 9.8 CRITICAL | FatPipe software administrative account with no password |
| CVE-2021-27855 | 8.8 HIGH | FatPipe software allows privilege escalation |
| CVE-2021-27857 | 7.5 HIGH | FatPipe software allows unauthenticated configuration download |
| CVE-2021-27858 | 5.3 MEDIUM | Missing authorization vulnerability in FatPipe software |
No comments yet