漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Authenticated Path Traversal allows Unauthorized Access in Web Interface
Vulnerability Description
A vulnerability in the web-based management interface of an ECOS device could allow a highly privileged, authenticated remote attacker to access the device's filesystem. Successful exploitation of this vulnerability could allow an attacker to access sensitive files and tamper with or delete system data.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
Hewlett Packard Enterprise EdgeConnect SD-WAN Gateway 安全漏洞
Vulnerability Description
Hewlett Packard Enterprise EdgeConnect SD-WAN Gateway是Hewlett Packard Enterprise公司的一款安全网关路由器。 Hewlett Packard Enterprise EdgeConnect SD-WAN Gateway 9.4.0.0版本至9.4.6.0版本、9.5.0.0版本至9.5.6.0版本和9.6.0.0版本至9.6.1.0版本存在安全漏洞,该漏洞源于Web管理界面问题,可能导致具有高权限的已认证远程攻击者访问设备文件系统
CVSS Information
N/A
Vulnerability Type
N/A