Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Angeet ES3 KVM OS command injection
Vulnerability Description
The Angeet ES3 KVM does not properly sanitize user-supplied variables parsed by the 'cfg.lua' script, allowing an authenticated attacker to execute OS-level commands.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
ANGEET ES3 KVM 安全漏洞
Vulnerability Description
ANGEET ES3 KVM是ANGEET公司的一款通过网络实现远程键盘、视频和鼠标控制的KVM切换设备。 Angeet ES3 KVM存在安全漏洞,该漏洞源于未正确清理用户提供的变量,可能导致经过身份验证的攻击者执行操作系统级命令。
CVSS Information
N/A
Vulnerability Type
N/A