Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
输出中的特殊元素转义处理不恰当(注入)
Vulnerability Title
Siemens SCALANCE 安全漏洞
Vulnerability Description
Siemens SCALANCE是德国西门子(Siemens)公司的一系列以太网交换机。可连接到工业控制系统 (ICS) 设备,包括可编程逻辑控制器 (PLC) 和人机界面 (HMI) 系统。 Siemens SCALANCE 系列产品存在安全漏洞,该漏洞源于设备无法正确地清除输入字段导致经过身份验证且具有管理权限的远程攻击者注入代码或生成根系统shell。以下产品和版本受到影响:SCALANCE M-800 / S615全部版本、SCALANCE SC-600 family V2.3.1之前版本、SCA
CVSS Information
N/A
Vulnerability Type
N/A