Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Cisco ATA 190 Series Analog Telephone Adapter Firmware Command Injection and Denial of Service Vulnerability
Vulnerability Description
A vulnerability in the web-based management interface of Cisco ATA 190 Series Analog Telephone Adapter firmware could allow an unauthenticated, remote attacker to modify the configuration or reboot an affected device. This vulnerability is due to the HTTP server allowing state changes in GET requests. An attacker could exploit this vulnerability by sending a malicious request to the web-based management interface on an affected device. A successful exploit could allow the attacker to make limited modifications to the configuration or reboot the device, resulting in a denial of service (DoS) condition.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Vulnerability Type
使用基本弱点进行的认证绕过
Vulnerability Title
Cisco ATA 190 安全漏洞
Vulnerability Description
Cisco ATA 190是美国思科(Cisco)公司的一个模拟电话适配器。 Cisco ATA 190存在安全漏洞,该漏洞源于 HTTP 服务器允许 GET 请求中的状态更改。未经身份验证的远程攻击者利用该漏洞可以修改配置或重新启动受影响的设备。
CVSS Information
N/A
Vulnerability Type
N/A