Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Affected devices do not properly enforce user authentication on specific API endpoints. This could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user. Successful exploitation requires that the attacker has learned the identity of a legitimate user.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
通过用户控制密钥绕过授权机制
Vulnerability Title
Siemens Industrial Edge Devices 安全漏洞
Vulnerability Description
Siemens Industrial Edge Devices是德国西门子(Siemens)公司的一系列工业边缘设备,用于现场数据处理与智能控制。 Siemens Industrial Edge Devices存在安全漏洞,该漏洞源于特定API端点身份验证不当,可能绕过身份验证并冒充合法用户。
CVSS Information
N/A
Vulnerability Type
N/A