MSNSwitch是MSNSwitch的一种智能电源插座。旨在在 Internet 连接中断时自动重启其插座。 MSNSwitch MNT.2408 版本存在安全漏洞,该漏洞源于允许未经身份验证的攻击者在应用程序中任意配置设置,从而导致远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | MSNSwitch Firmware MNT.2408 is susceptible to authentication bypass in the component http://MYDEVICEIP/cgi-bin-sdb/ExportSettings.sh. An attacker can arbitrarily configure settings, leading to possible remote code execution and subsequent unauthorized operations. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2022/CVE-2022-32429.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2022-25907 | 7.5 HIGH | Prototype Pollution |
| CVE-2021-39696 | Google Android 安全漏洞 | |
| CVE-2022-20354 | Google Android 安全漏洞 | |
| CVE-2022-20357 | Google Android 安全漏洞 | |
| CVE-2022-20356 | Google Android 输入验证错误漏洞 | |
| CVE-2022-20355 | Google Android 输入验证错误漏洞 | |
| CVE-2022-20358 | Google Android 安全漏洞 | |
| CVE-2022-20346 | Google Android 缓冲区错误漏洞 | |
| CVE-2022-20345 | Google Android 缓冲区错误漏洞 | |
| CVE-2022-20344 | Google Android 竞争条件问题漏洞 | |
| CVE-2022-20239 | Google Android 安全漏洞 | |
| CVE-2022-20347 | Google Android 安全漏洞 | |
| CVE-2022-22983 | VMware Workstation 安全漏洞 | |
| CVE-2022-31673 | VMware vRealize Operations 安全漏洞 | |
| CVE-2022-31674 | VMware vRealize Operations 日志信息泄露漏洞 | |
| CVE-2022-31675 | VMware vRealize Operations 安全漏洞 | |
| CVE-2022-31672 | VMware vRealize Operations 安全漏洞 | |
| CVE-2022-23238 | Netapp StorageGRID 安全漏洞 | |
| CVE-2022-2719 | Imagemagick Studio ImageMagick 安全漏洞 | |
| CVE-2022-2457 | Business-central 安全漏洞 |
Showing top 20 of 55 CVEs. View all on vendor page → →
No comments yet