漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Arbitrary Command Injection in Netcom NTC-6200 & NWL-222
Vulnerability Description
The Netcom NTC 6200 and NWL 222 series expose a web interface to be configured and set up by operators. Multiple endpoints of the web interface are vulnerable to arbitrary command injection and use insecure hardcoded passwords. Remote authenticated attackers can gain arbitrary code execution with elevated privileges.
CVSS Information
CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Vulnerability Type
在命令中使用的特殊元素转义处理不恰当(命令注入)
Vulnerability Title
Netcomm NTC 6200和Netcomm NWL 222 安全漏洞
Vulnerability Description
Netcomm NTC 6200和Netcomm NWL 222都是澳大利亚Netcomm公司的一款路由器。 Netcomm NTC 6200和Netcomm NWL 222存在安全漏洞,该漏洞源于命令注入和硬编码密码,可能导致任意代码执行。
CVSS Information
N/A
Vulnerability Type
N/A