漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Edimax GS-5008PL <= 1.00.54 Global Authentication State Across All Clients
Vulnerability Description
Edimax GS-5008PL firmware version 1.00.54 and prior contain an authentication bypass vulnerability that allows unauthenticated attackers to access the management interface. Attackers can exploit the global authentication flag mechanism to gain administrative access without credentials after any user authenticates, enabling unauthorized password changes, firmware uploads, and configuration modifications.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
CWE-1108
Vulnerability Title
Edimax GS-5008PL 安全漏洞
Vulnerability Description
Edimax GS-5008PL是中国台湾讯舟(Edimax)公司的一款千兆以太网交换机。 Edimax GS-5008PL 1.00.54及之前版本存在安全漏洞,该漏洞源于身份验证绕过,可能导致未经身份验证的攻击者访问管理界面,进行未经授权的密码更改、固件上传和配置修改。
CVSS Information
N/A
Vulnerability Type
N/A