漏洞标题
透过可读写Mosquitto配置文件执行代码
漏洞描述信息
通过可写Mosquitto配置文件执行代码
CVSS信息
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
漏洞类别
关键资源的不正确权限授予
漏洞标题
Code Execution through Writable Mosquitto Configuration File
漏洞描述信息
A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted
programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts.
This issue affects ABB Ability™ zenon: from 11 build through 11 build 106404.
CVSS信息
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
漏洞类别
系统设置或配置在外部可控制
漏洞标题
ABB Abilit zenon 安全漏洞
漏洞描述信息
ABB Abilit zenon是ABB公司的一个安全的运营数据管理平台,可以轻松连接机器、基础设施和生产资产。 ABB Abilit zenon 11 build至11 build 106404版本存在安全漏洞,该漏洞源于允许低权限用户读取和更新Zenon系统各个目录中的数据。
CVSS信息
N/A
漏洞类别
其他