Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Generex CS141 through 2.10 allows remote command execution by administrators via a web interface that reaches run_update in /usr/bin/gxserve-update.sh (e.g., command execution can occur via a reverse shell installed by install.sh).
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
Generex UPS Adapter CS141 安全漏洞
Vulnerability Description
Generex UPS Adapter CS141是德国Generex公司的一款UPS(Uninterruptible Power System,不间断电源)适配器。 Generex UPS Adapter CS141 2.08之前的版本存在安全漏洞,该漏洞源于其允许管理员通过访问/usr/bin/ gxservice -update.sh中的run_update的web界面远程执行命令(例如,可以通过install.sh实现反向shell从而执行命令)。
CVSS Information
N/A
Vulnerability Type
N/A