Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
** UNSUPPORTED WHEN ASSIGNED ** A command injection vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the LAN to execute operating system (OS) commands on a vulnerable device by sending a crafted HTTP request.
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
Zyxel WRE6505 操作系统命令注入漏洞
Vulnerability Description
Zyxel WRE6505是中国合勤(Zyxel)公司的一款无线信号扩展设备。 Zyxel WRE6505 v2 V1.00(ABDV.3)C0版本存在操作系统命令注入漏洞,该漏洞源于CGI程序存在命令注入,可能导致相邻攻击者通过发送特制HTTP请求执行操作系统命令。
CVSS Information
N/A
Vulnerability Type
N/A