Intelbras SG 2404 MR是巴西Intelbras公司的一款具有网络管理功能的交换机。 Intelbras SG 2404 MR 1.00.54版本存在安全漏洞,该漏洞源于存在身份验证绕过,允许未经身份验证的攻击者下载设备的备份文件,从而暴露有关设备配置的关键信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/leonardobg/CVE-2023-36144 | POC Details |
| 2 | An authentication bypass in Intelbras Switch SG 2404 MR in firmware 1.00.54 allows an unauthenticated attacker to download the backup file of the device, exposing critical information about the device configuration. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-36144.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-26135 | 7.3 HIGH | flatnest 安全漏洞 |
| CVE-2023-3338 | 6.5 MEDIUM | Crash due to a null pointer dereference in the dn_nsp_send function |
| CVE-2023-37360 | 5.9 MEDIUM | Pacparser 注入漏洞 |
| CVE-2023-2908 | 5.5 MEDIUM | Libtiff: null pointer dereference in tif_dir.c |
| CVE-2023-37301 | MediaWiki 安全漏洞 | |
| CVE-2023-1206 | Linux kernel 资源管理错误漏洞 | |
| CVE-2023-33298 | Perimeter 81 安全漏洞 | |
| CVE-2023-27469 | Malwarebytes 安全漏洞 | |
| CVE-2023-29145 | Malwarebytes 安全漏洞 | |
| CVE-2023-31543 | pipreqs 代码问题漏洞 | |
| CVE-2023-29147 | Malwarebytes 安全漏洞 | |
| CVE-2023-37365 | Hnswlib 资源管理错误漏洞 | |
| CVE-2023-34840 | angular-ui-notification 跨站脚本漏洞 | |
| CVE-2023-37300 | MediaWiki 安全漏洞 | |
| CVE-2023-36347 | POS Codekop 访问控制错误漏洞 | |
| CVE-2023-37302 | MediaWiki 跨站脚本漏洞 | |
| CVE-2023-37303 | MediaWiki 安全漏洞 | |
| CVE-2023-37304 | MediaWiki 跨站脚本漏洞 | |
| CVE-2023-37305 | MediaWiki 安全漏洞 | |
| CVE-2023-37306 | MISP 安全漏洞 |
Showing top 20 of 29 CVEs. View all on vendor page → →
No comments yet