具有设备物理访问权限的恶意用户可以在无需身份验证的情况下,将交换机从出厂设置启动,并使用默认的管理凭据获取管理访问权限,同时将更改保存到配置文件中,以便在交换机下次正常启动时这些更改仍然保留。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Lion Controls | 700 Series | 0 ~ Firmware Versions 3.11.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-39453 | 8.3 HIGH | Red Lion Controls N-Tron 700 Series Reachable Assertion |
| CVE-2026-39460 | 8.1 HIGH | Red Lion Controls N-Tron 700 Series Insufficiently Protected Credentials |
| CVE-2026-33367 | 8.1 HIGH | Red Lion Controls N-Tron 700 Series Missing Authentication for Critical Function |
| CVE-2026-28745 | 7.5 HIGH | Red Lion Controls N-Tron 700 Series Storing Passwords in a Recoverable Format |
| CVE-2026-29797 | 7.1 HIGH | Red Lion Controls N-Tron 700 Series Download of Code Without Integrity Check |
| CVE-2026-32645 | 6.0 MEDIUM | Red Lion Controls N-Tron 700 Series Use of Hard-Coded Credentials |
No comments yet