Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
WEIDMUELLER: WLAN devices affected by exploitable format string vulnerability
Vulnerability Description
In Weidmueller Industrial WLAN devices in multiple versions an exploitable format string vulnerability exists in the iw_console conio_writestr functionality. A specially crafted time server entry can cause an overflow of the time server buffer, resulting in remote code execution. An attacker can send commands while authenticated as a low privilege user to trigger this vulnerability.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
使用外部控制的格式字符串
Vulnerability Title
Weidmueller Industrial WLAN 格式化字符串错误漏洞
Vulnerability Description
Weidmueller Industrial WLAN devices是德国Weidmueller公司的一个工控WIAN。 Weidmueller Industrial WLAN 存在格式化字符串错误漏洞,该漏洞源于特制的时间服务器条目可能会导致时间服务器缓冲区溢出,从而导致远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A