在 SMA1000 设备中发现了认证后操作系统命令中特殊元素处理不当(“OS 命令注入”)漏洞。在特定条件下,该漏洞可能允许远程认证攻击者以管理员身份执行任意操作系统命令,从而导致远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-102258 | SMA1000 AMC存储型XSS漏洞 | |
| CVE-2026-102257 | SMA1000 AMC Zip Slip漏洞致RCE | |
| CVE-2026-102255 | 华为SMA1000 SSRF漏洞 |
No comments yet