Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Inbit Messenger 4.9.0 - Unauthenticated Remote Command Execution (RCE)
Vulnerability Description
Inbit Messenger 4.6.0 - 4.9.0 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by exploiting a stack overflow in the messenger's protocol. Attackers can send specially crafted XML packets to port 10883 with a malicious payload to trigger the vulnerability and execute commands with system privileges.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
栈缓冲区溢出
Vulnerability Title
Inbit Messenger 安全漏洞
Vulnerability Description
Inbit Messenger是Inbit公司的一款面向企业内网的即时通信套件。 Inbit Messenger 4.6.0版本至4.9.0版本存在安全漏洞,该漏洞源于协议栈溢出,可能导致未经身份验证的攻击者执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A