Chcnav P5E GNSS是Chcnav公司的全球定位系统。 Chcnav P5E GNSS 存在安全漏洞,该漏洞源于检查用户cookie的方式错误,攻击者利用该漏洞可绕过使用用户名和密码的系统识别。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Chcnav | Chcnav - P5E GNSS | 4.2 ~ 4.1* | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-30624 | 6.8 MEDIUM | Chcnav - P5E GNSS Authentication bypass admin password reset |
| CVE-2022-30626 | 6.3 MEDIUM | Chcnav - P5E GNSS API not secure |
| CVE-2022-30625 | 5.7 MEDIUM | Chcnav - P5E GNSS Directory listing |
| CVE-2022-30627 | 5.7 MEDIUM | Chcnav - P5E GNSS Information disclosure hard coded credentials. |
No comments yet