Carrier LenelS2 HID Mercury access panels是美国Carrier公司的一个控制器面板。 Carrier LenelS2 HID Mercury access panels 存在安全漏洞,该漏洞源于安全措施实施不充分。远程攻击者可以使用特制名称更新主机名,导致执行任意shell命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| LenelS2 | LNL-X2210 | ALL ~ 1.302 | - |
|
| LenelS2 | LNL-X2220 | ALL ~ 1.302 | - |
|
| LenelS2 | LNL-X3300 | ALL ~ 1.302 | - |
|
| LenelS2 | LNL-X4420 | ALL ~ 1.302 | - |
|
| LenelS2 | LNL-4420 | ALL ~ 1.296 | - |
|
| LenelS2 | S2-LP-1501 | ALL ~ 1.302 | - |
|
| LenelS2 | S2-LP-1502 | ALL ~ 1.302 | - |
|
| LenelS2 | S2-LP-2500 | ALL ~ 1.302 | - |
|
| LenelS2 | S2-LP-4502 | ALL ~ 1.302 | - |
|
| HID Mercury | LP1501 | ALL ~ 1.302 | - |
|
| HID Mercury | LP1502 | ALL ~ 1.302 | - |
|
| HID Mercury | LP2500 | ALL ~ 1.302 | - |
|
| HID Mercury | LP4502 | ALL ~ 1.302 | - |
|
| HID Mercury | EP4502 | ALL ~ 1.296 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | testtesttesttesttesttesttesttesttesttest | https://github.com/realyme/CVE-2022-31479-test | POC Details |
No public POC found.
Login to generate AI POC| CVE-2022-31481 | 10.0 CRITICAL | Remote Code Execution via buffer overflow in firmware update process |
| CVE-2022-31483 | 9.1 CRITICAL | Arbitrary file write via authenticated OSDP file upload |
| CVE-2022-31486 | 8.8 HIGH | Command injection via Advanced Networking route add functionality |
| CVE-2022-31480 | 7.5 HIGH | Unauthenticated Firmware Upload and Arbitrary Reboot |
| CVE-2022-31482 | 7.5 HIGH | Denial-of-Service via internal structure overflow |
| CVE-2022-31484 | 7.5 HIGH | User Account Deletion Unauthenticated |
| CVE-2022-31485 | 5.3 MEDIUM | Unauthenticated homepage note modification |
No comments yet