Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
NetVision Information airPASS - OS Command Injection
Vulnerability Description
The airPASS from NetVision Information has an OS Command Injection vulnerability, allowing remote attackers with regular privileges to inject and execute arbitrary OS commands.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
NetVision Information airPASS 操作系统命令注入漏洞
Vulnerability Description
NetVision Information airPASS是中国正邦资讯(NetVision Information)公司的一款应用程序。 NetVision Information airPASS存在操作系统命令注入漏洞,该漏洞源于容易受到操作系统命令注入攻击,允许具有常规权限的远程攻击者注入和执行任意操作系统命令。
CVSS Information
N/A
Vulnerability Type
N/A