以下是对该漏洞描述信息的中文翻译: 翻译结果: CONPROSYS TM 系列中存在“操作系统命令注入”(OS Command Injection)问题,即对用于操作系统命令的特殊字符(元素)未进行适当的中性化处理(即缺乏有效的输入验证与转义)。如果该漏洞被利用,能够登录到产品的攻击者可能会执行任意的操作系统命令。 --- 术语解析与说明: 1. Improper neutralization of special elements:直译为“特殊元素的中性化处理不当”。在安全语境下,“中性化”通常指对输入中的特殊字
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Contec Co., Ltd | CPS-TM341G5MB-ADSC1-931 | 0 ~ 2.19 | - |
|
| Contec Co., Ltd | CPS-TM341MB-ADSC1-931 | 0 ~ 2.19 | - |
|
| Contec Co., Ltd | CPS-TM341GMB-ADSC1-931 | 0 ~ 2.19 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet