Belden Hirschmann Industrial HiVision是美国Belden公司的一款工业网络管理软件平台。 Belden Hirschmann Industrial HiVision 08.1.04之前版本和08.2.00之前版本存在代码问题漏洞,该漏洞源于执行用户配置的外部应用程序时路径清理不足,可能导致本地攻击者执行任意二进制文件。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Belden | Hirschmann Industrial HiVision | ≤ 08.1.03 |
affected |
08.1.04 |
unaffected | ||
08.2.00 |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Belden | Hirschmann Industrial HiVision | 0 ~ 08.1.03 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-20237 | 9.8 CRITICAL | Hirschmann Industrial HiVision Authentication Bypass Remote Code Execution |
| CVE-2018-25237 | 9.8 CRITICAL | Hirschmann HiSecOS Buffer Overflow via HTTPS Login |
| CVE-2018-25236 | 9.8 CRITICAL | Hirschmann HiOS HiSecOS Authentication Bypass via HTTP Management |
| CVE-2017-20234 | 9.8 CRITICAL | GarrettCom Magnum 6K and 10K Authentication Bypass via Hardcoded String |
| CVE-2021-4477 | 9.1 CRITICAL | Hirschmann HiLCOS OpenBAT BAT450 IPv6 IPsec Firewall Bypass |
| CVE-2015-10148 | 8.2 HIGH | Hirschmann HiLCOS Hard-coded Credentials SSH SSL Keys |
| CVE-2016-15058 | 8.1 HIGH | Hirschmann HiLCOS Classic Platform Password Exposure via SNMP |
| CVE-2020-37216 | 7.5 HIGH | Hirschmann HiOS EtherNet/IP Stack Denial of Service |
| CVE-2017-20238 | 7.1 HIGH | Hirschmann Industrial HiVision Improper Authorization Privilege Escalation |
| CVE-2017-20233 | 5.4 MEDIUM | Hirschmann HiLCOS Layer-2 Firewall Multicast Broadcast Traffic Bypass |
No comments yet