Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Kerlink gateways running KerOS prior to version 5.10 expose their web interface exclusively over HTTP, without HTTPS support. This lack of transport layer security allows a man-in-the-middle attacker to intercept and modify traffic between the client and the device.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N
Vulnerability Type
N/A
Vulnerability Title
Kerlink KerOS 安全漏洞
Vulnerability Description
Kerlink KerOS是法国Kerlink公司的一个操作系统。 Kerlink KerOS 5.10之前版本存在安全漏洞,该漏洞源于仅通过HTTP暴露Web界面且不支持HTTPS,可能导致中间人攻击。
CVSS Information
N/A
Vulnerability Type
N/A