Netis NX10 固件版本 V4.0.1.5808 和 V3.0.0.4142 存在信息泄露漏洞,允许未认证的发送请求到Web管理界面的 sysinfo 操作以获取管理员密码,且无需有效的会话。攻击者可以利用暴露的凭据向登录处理程序重放请求,从而在设备上建立一个完全认证的管理员会话。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Netis Systems | NX10 | 4.0.1.5808 |
affected |
3.0.0.4142 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Netis Systems | NX10 | 4.0.1.5808 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet