Nozomi Networks Guardian是美国Nozomi Networks公司的一款物联网设备和软件检查系统。 Nozomi Networks Guardian和CMC存在安全漏洞,该漏洞源于IDS的Asset Intelligence功能存在输入验证不当问题,导致存在SQL注入漏洞。受影响的产品和版本:Nozomi Networks Guardian和CMC 22.6.0之前的22.6.3和23.1.0版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Nozomi Networks | Guardian | 22.6.0 ~ 22.6.3 | - |
|
| Nozomi Networks | CMC | 22.6.0 ~ 22.6.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-2567 | 8.8 HIGH | Authenticated SQL Injection on Query functionality in Guardian/CMC before 22.6.3 and 23.1. |
| CVE-2023-32649 | 7.5 HIGH | DoS on IDS parsing of malformed asset fields in Guardian/CMC >= 22.6.0 before 22.6.3 and 2 |
No comments yet