Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-4361

EPSS 4.04% · P89
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-4361

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
NETGEAR (formerly Infrant) ReadyNAS RAIDiator before 4.00b2-p2-T1 beta creates a default SSH root password derived from the hardware serial number, which makes it easier for remote attackers to guess the password and obtain login access.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
NETGEAR ReadyNAS RAIDiator默认root用户口令漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
"ReadyNAS是基于Linux和debian-sparc平台的直接挂网存储设备。 ReadyNAS设备的root用户口令生成实现上存在漏洞,远程攻击者可能轻易计算得到口令获取非授权访问。 ReadyNAS默认启用了两个用户,一个是admin(默认口令为infrant1),另一个为root,每次启动时都会使用硬编码的算法生成root口令,该算法会用到以太网MAC地址、软件版本号和共享密钥的哈希。无法永久性地更改root口令,因此每次启动时都会重置。 ReadyNAS设备从内置的闪存启动,Linux内核和
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-4361

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-4361

Please Login to view more intelligence information

Same Patch Batch · n/a · 2007-08-15 · 24 CVEs total

CVE-2007-4359SkilMatch Systems JobLister3 Index.PHP SQL注入漏洞
CVE-2007-4357Mozilla Firefox URL地址欺骗漏洞
CVE-2007-4356Microsoft Internet Explorer 安全漏洞
CVE-2007-4355IBM AT Command Local 缓冲区溢出漏洞
CVE-2007-4354IBM AIX Fileplace Command 缓冲区溢出漏洞
CVE-2007-4353IBM AIX Configuration Commands 多个缓冲区溢出漏洞
CVE-2007-4366WengoPhone Content-Type拒绝服务漏洞
CVE-2007-4365eXV2 CMS 跨站脚本攻击漏洞
CVE-2007-4364Fedora Commons空LDAP口令绕过认证漏洞
CVE-2007-4363Drupal CCK nodereference 模块多个跨站脚本攻击漏洞
CVE-2007-4362Prozilla Webring 'category.php'SQL注入漏洞
CVE-2007-4360Dell远程访问卡SSH远程拒绝服务漏洞
CVE-2007-4367Opera Software Opera 设计错误漏洞
CVE-2007-4358Zoidcom畸形报文双重释放漏洞
CVE-2007-2929联想Automated Solutions ActiveX控件不安全方法漏洞
CVE-2007-2928联想Automated Solutions ActiveX控件多个安全漏洞
CVE-2007-2240联想Automated Solutions ActiveX控件签名验证漏洞
CVE-2007-0319Motive ActiveUtils远程栈缓冲区溢出漏洞
CVE-2007-4278ESRI ArcSDE Server SPrintf函数远程栈缓冲区溢出漏洞
CVE-2007-4371Neuron Blog'admin/pages/blog-add.php'任意文件上传漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2007-4361

No comments yet


Leave a comment