Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability has been identified in PowerSys (All versions < V3.11). The affected application insufficiently protects responses to authentication requests. This could allow a local attacker to bypass authentication, thereby gaining administrative privileges for the managed remote devices.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
认证机制不恰当
Vulnerability Title
Siemens PowerSys 授权问题漏洞
Vulnerability Description
Siemens PowerSys是德国西门子(Siemens)公司的一款功能全面的电力系统管理软件。 Siemens PowerSys V3.11版本存在授权问题漏洞,该漏洞源于应用程序对身份验证请求的响应保护不足,允许本地攻击者绕过身份验证,从而获得受管理远程设备的管理权限。
CVSS Information
N/A
Vulnerability Type
N/A