漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
code-projects for Plugin cstecgi.cgi setWiFiMultipleConfig buffer overflow
Vulnerability Description
A vulnerability was detected in code-projects for Plugin 4.1.2cu.5137. The impacted element is the function setWiFiMultipleConfig in the library /lib/cste_modules/wireless.so of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument wepkey2 results in buffer overflow. The attack can be launched remotely. The exploit is now public and may be used.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
未进行输入大小检查的缓冲区拷贝(传统缓冲区溢出)
Vulnerability Title
Code-Projects for Plugin 缓冲区错误漏洞
Vulnerability Description
Code-Projects for Plugin是Code-Projects开源的一个插件。 code-projects for Plugin 4.1.2cu.5137版本存在缓冲区错误漏洞,该漏洞源于文件/cgi-bin/cstecgi.cgi中库/lib/cste_modules/wireless.so的setWiFiMultipleConfig函数对参数wepkey2的操作,可能导致缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A