漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
WIFISKY 7-Layer Flow Control Router Remote Command Execution
Vulnerability Description
A remote command injection vulnerability exists in the confirm.php interface of the WIFISKY 7-layer Flow Control Router via a specially-crafted HTTP GET request to the t parameter. Insufficient input validation allows unauthenticated attackers to execute arbitrary OS commands. Exploitation evidence was observed by the Shadowserver Foundation on 2025-01-25 UTC.
CVSS Information
N/A
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
WIFISKY 7-layer Flow Control Router 安全漏洞
Vulnerability Description
WIFISKY 7-layer Flow Control Router是中国普锐(WIFISKY)公司的一款路由器。 WIFISKY 7-layer Flow Control Router存在安全漏洞,该漏洞源于confirm.php接口中参数t的错误操作导致命令注入攻击。
CVSS Information
N/A
Vulnerability Type
N/A