Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2006-0374

EPSS 1.07% · P78
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2006-0374

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Advantage Century Telecommunication (ACT) P202S IP Phone 1.01.21 running firmware 1.1.21 has multiple undocumented ports available, which (1) might allow remote attackers to obtain sensitive information, such as memory contents and internal operating-system data, by directly accessing the VxWorks WDB remote debugging ONCRPC (aka wdbrpc) on UDP 17185, (2) reflect network data using echo (TCP 7), or (3) gain access without authentication using rlogin (TCP 513).
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
ACT P202S VOIP WIFI Phones多个远程漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
运行1.1.21固件的Advantage Century Telecommunication (ACT) P202S IP Phone1.01.21有多个未记录的端口可用,这(1) 可能让远程攻击者通过直接访问UDP 17185上的VxWorks WDB远程调试ONCRPC(也称为wdbrpc)获取内存内容和内部操作系统数据之类的敏感信息,(2)使用echo (TCP 7)反映网络数据或(3)使用rlogin (TCP 513)无需认证即可获取访问权。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2006-0374

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2006-0374

登录查看更多情报信息。

Same Patch Batch · n/a · 2006-01-22 · 24 CVEs total

CVE-2006-0365XMB 跨站脚本攻击漏洞
CVE-2006-0353LSH 访问验证错误
CVE-2006-0376Windows 系列版本802.11无线客户机安全警告漏洞
CVE-2006-0375ACT P202S VOIP WIFI Phones未明漏洞
CVE-2006-0373Douran FollowWeb Portal Register.ASPX 跨站脚本攻击漏洞
CVE-2006-0372BlogPHP多个SQL注入漏洞
CVE-2006-0371RCBlog Index.PHP目录遍历漏洞
CVE-2006-0370Noah Medling RCBlog 安全访问控制漏洞
CVE-2006-0369MySQL 查询返回创建VIEW查询敏感信息泄露漏洞
CVE-2006-0368Cisco Call Manager端口管理拒绝服务漏洞
CVE-2006-0367Cisco CallManager CCMAdmin远程权限提升漏洞
CVE-2006-0366Phpclanwebsite BBCode IMG 跨站脚本攻击漏洞
CVE-2006-0354Cisco Aironet无线接入点ARP攻击拒绝服务漏洞
CVE-2006-0364MyBB Signature 跨站脚本攻击漏洞
CVE-2006-0363MSN Messenger CryptUnprotectData程序原始密码获取漏洞
CVE-2006-03623Com TippingPoint IPS远程未指定的拒绝服务漏洞
CVE-2006-0361Bit 5 Blog AddComment.PHP 跨站脚本攻击漏洞
CVE-2006-0360MPM HP-180W VOIP WIFI Phone信息泄露漏洞
CVE-2006-0359CounterPath eyeBeam SIP首部数据远程溢出漏洞
CVE-2006-0358PowerPortal 多个SQL注入漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2006-0374

No comments yet


Leave a comment