Satel Netco Design 在 v2.1.7 之前的版本中,其数据导入功能存在相对路径遍历漏洞。拥有“查看者(Viewer)”权限的已认证用户可访问预期目录之外的文件路径,并利用可观察到的应用程序响应来判断主机系统上是否存在特定文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Satel | Satel Netco Design | 0 ~ v2.1.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-101024 | 8.8 HIGH | Satel Netco Design Relative path traversal |
| CVE-2026-105269 | 6.8 MEDIUM | Satel Netco Design Cross-site Scripting |
| CVE-2026-104628 | 6.5 MEDIUM | Satel Netco Design Inefficient Regular Expression Complexity |
No comments yet