Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
/api/user/users in the web GUI for the Cubro EXA48200 network packet broker (build 20231025055018) fixed in V5.0R14.5P4-V3.3R1 allows remote authenticated users of the application to increase their privileges by sending a single HTTP PUT request with rolename=Administrator, aka incorrect access control.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cubro EXA48200 安全漏洞
Vulnerability Description
Cubro EXA48200是Cubro公司的一个高级网络数据包代理。 Cubro EXA48200存在安全漏洞,该漏洞源于/api/user/users接口的访问控制不当,允许提升权限。
CVSS Information
N/A
Vulnerability Type
N/A