在 11.0.0 之前的 openNDS 中存在一个基于堆的缓冲区溢出漏洞,该漏洞允许位于 Captive Portal(强制门户)网络上的未认证攻击者使 openNDS 守护进程崩溃(拒绝服务攻击),并有可能实现远程代码执行。该漏洞位于 文件中。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-38820 | 8.3 HIGH | openNDS 11.0.0前存在Shell命令注入 |
| CVE-2026-38822 | 7.6 HIGH | openNDS 11.0.0 前客户端脚本命令注入 |
| CVE-2026-38819 | 5.3 MEDIUM | openNDS 11.0.0之前存在内存泄漏漏洞 |
No comments yet