Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Unauthorized local file reading in B&R APROL
Vulnerability Description
An improper control of generation of code ('Code Injection') vulnerability in the AprolCreateReport component of B&R APROL <4.4-00P5 may allow an unauthenticated network-based attacker to read files from the local system.
CVSS Information
N/A
Vulnerability Type
对生成代码的控制不恰当(代码注入)
Vulnerability Title
B&R Industrial Automation B&R APROL 代码注入漏洞
Vulnerability Description
B&R Industrial Automation B&R APROL是奥地利贝加莱工业自动化(B&R Industrial Automation)公司的一个过程控制系统。 B&R Industrial Automation B&R APROL 4.4-00P5之前版本存在代码注入漏洞,该漏洞源于AprolCreateReport组件的代码注入,可能导致未经验证的网络攻击者读取本地系统文件。
CVSS Information
N/A
Vulnerability Type
N/A