当前位置:网站首页>Serious security vulnerabilities reported by moxa mxview network management software
Serious security vulnerabilities reported by moxa mxview network management software
2022-07-03 02:40:00 【Khan security team】
Some effects have been disclosed Moxa MXview be based on Web Technical details of the security vulnerability of the network management system , Some of them may be linked by unauthenticated attackers , To achieve remote code execution on unpatched servers .
Claroty Security researcher Noam Moshe In a report released this week , These five security vulnerabilities “ May allow remote 、 An unauthenticated attacker executes code on the host with the highest available privileges :NT AUTHORITY\SYSTEM” .
Moxa MXview Designed to configure 、 Designed to monitor and diagnose network equipment in Industrial Networks . These affect network management software 3.x to 3.2.2 The defect of the version is 2021 year 10 After the coordinated disclosure process in January, it will be in 3.2.4 Or later .
“ Successful exploitation of these vulnerabilities may allow attackers to create or overwrite critical files to execute code 、 Access program 、 Obtain the credentials 、 Disable Software 、 Read and modify other inaccessible data 、 Allow remote connection to internal communication channels or interaction and remote use MQTT,” U.S. cybersecurity and Infrastructure Security Agency (CISA) In an announcement, it said .
MQTT It refers to a message passing protocol that promotes remote asynchronous communication , Support in MXview Messages are transferred between different components in the environment .
The list of defects is as follows ——
- CVE-2021-38452(CVSS score :7.5)- Path traversal vulnerability in applications , Allow access to or overwrite key files used to execute code
- CVE-2021-38454(CVSS fraction :10.0)- Allow remote connections to MQTT Misconfigured service , Thus, it can interact and use communication channels remotely
- CVE-2021-38456(CVSS fraction :9.8)- Use hard coded passwords
- CVE-2021-38458(CVSS fraction :9.8)- Improper neutralization of special elements , It may cause unauthorized commands to be executed remotely
- CVE-2021-38460(CVSS fraction :7.5)- Password disclosure cases that may allow attackers to obtain credentials
The above three vulnerabilities ——CVE-2021-38452、CVE-2021-38454 and CVE-2021-38458 Can be strung together , In vulnerable areas with system privileges MXView Implement pre validated remote code execution on the instance .
stay Claroty In the hypothetical attack scenario designed ,CVE-2021-38452 May be abused , By reading the configuration file gateway-upper.ini To get plain text MQTT password , And then use it CVE-2021-38454 Inject hooligans MQTT news , The command injection on the server triggers code execution .
“ The attacker directed at MQTT The agent injects malicious messages , Bypass all input validation performed by the server , And pass OS Command injection vulnerability enables arbitrary remote code execution ,”Moshe explains .
边栏推荐
- 面试项目技术栈总结
- sql server 查詢指定錶的錶結構
- GBase 8c系统表-pg_authid
- A2L file parsing based on CAN bus (2)
- Error invalid bound statement (not found): com ruoyi. stock. mapper. StockDetailMapper. XXXX solution
- 簡單理解svg
- xiaodi-笔记
- My creation anniversary
- [tutorial] chrome turns off cross domain policies CORS and samesite, and brings cookies across domains
- Hcip137-147 title + analysis
猜你喜欢
where 1=1 是什么意思
Classes and objects - initialization and cleanup of objects - constructor call rules
Tongda OA V12 process center
[translation] modern application load balancing with centralized control plane
Today, it's time to copy the bottom!
[fluent] listview list (map method description of list set | vertical list | horizontal list | code example)
定了,就选它
"Analysis of 43 cases of MATLAB neural network": Chapter 43 efficient programming skills of neural network -- Discussion Based on the characteristics of the new version of MATLAB r2012b
[shutter] bottom navigation bar page frame (bottomnavigationbar bottom navigation bar | pageview sliding page | bottom navigation and sliding page associated operation)
[shutter] setup of shutter development environment (supplement the latest information | the latest installation tutorial on August 25, 2021)
随机推荐
Global and Chinese ammonium dimolybdate market in-depth analysis and prospect risk prediction report 2022 Edition
Gbase 8C function / stored procedure definition
Restcloud ETL cross database data aggregation operation
SQL statement
awk从入门到入土(0)awk概述
random shuffle注意
Random shuffle note
The Linux server needs to install the agent software EPS (agent) database
Thread safe singleton mode
Deep learning: multi-layer perceptron and XOR problem (pytoch Implementation)
Gbase 8C system table PG_ am
Gbase 8C system table PG_ attribute
sql server数据库添加 mdf数据库文件,遇到的报错
GBase 8c系统表-pg_constraint
Kubernetes cluster log and efk architecture log scheme
Pytest (6) -fixture (Firmware)
Gbase 8C system table PG_ collation
cvpr2022去雨去雾
Build a private cloud disk cloudrev
Gbase 8C trigger (II)