漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Spacelabs Healthcare Sentinel 10.5.x < 11.6.0 Unauthenticated RCE via .NET Remoting
Vulnerability Description
Spacelabs Healthcare Sentinel versions 10.5.x and higher and 11.x.x before 11.6.0 contain an unauthenticated remote code execution vulnerability through a deprecated .NET Remoting HTTP channel exposed on port 8989 that allows attackers to perform arbitrary file read and write operations by supplying valid .NET URI endpoints. Attackers can write ASPX webshells to the IIS wwwroot directory to achieve unauthenticated remote code execution on the system. Port 8989 is not exposed in a default Sentinel installation; exploitation requires that the .NET Remoting port has been explicitly made network-accessible through deliberate configuration or network policy changes.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
关键功能的认证机制缺失
Vulnerability Title
Spacelabs Healthcare Sentinel 安全漏洞
Vulnerability Description
Spacelabs Healthcare Sentinel是美国Spacelabs Healthcare公司的一个心脏病学信息管理系统。 Spacelabs Healthcare Sentinel 10.5.x及更高版本和11.6.0之前的11.x.x版本存在安全漏洞,该漏洞源于通过已弃用的.NET Remoting HTTP通道暴露在端口8989上,可能导致未经身份验证的攻击者通过提供有效的.NET URI端点执行任意文件读写操作,攻击者可向IIS wwwroot目录写入ASPX webshell以实现
CVSS Information
N/A
Vulnerability Type
N/A