Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An OS command injection vulnerability exists in the console_main_loop :sys functionality of Abode Systems, Inc. iota All-In-One Security Kit 6.9Z. A specially-crafted XCMD can lead to arbitrary command execution. An attacker can send an XML payload to trigger this vulnerability.
CVSS Information
N/A
Vulnerability Type
遗留的调试代码
Vulnerability Title
Abode Iota 操作系统命令注入漏洞
Vulnerability Description
Abode Iota是Abode公司的一个可靠的 Diy 家庭安全系统。 Abode Iota 6.9Z版本存在安全漏洞,该漏洞源于console_main_loop :sys 功能中存在操作系统命令注入,攻击者利用该漏洞可以发送特制的 XCMD导致任意命令执行。
CVSS Information
N/A
Vulnerability Type
N/A