Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device's information.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Vulnerability Type
访问控制不恰当
Vulnerability Title
Dataprobe iBoot-PDU 安全漏洞
Vulnerability Description
Dataprobe iBoot-PDU是美国Dataprobe公司的一种可通过 Web 访问的受管 PDU 独立控制的插座。 Dataprobe iBoot-PDU FW存在安全漏洞,该漏洞源于允许攻击者从云中访问设备的主管理页面。该特性允许用户远程连接设备,但是,目前的实现允许用户访问其他设备的信息。
CVSS Information
N/A
Vulnerability Type
N/A