Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2011-4859

EPSS 7.00% · P92
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2011-4859

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB DIO STBNIC2212 and STBNIP2* modules, uses hardcoded passwords for the (1) AUTCSE, (2) AUT_CSE, (3) fdrusers, (4) ftpuser, (5) loader, (6) nic2212, (7) nimrohs2212, (8) nip2212, (9) noe77111_v500, (10) ntpupdate, (11) pcfactory, (12) sysdiag, (13) target, (14) test, (15) USER, and (16) webserver accounts, which makes it easier for remote attackers to obtain access via the (a) TELNET, (b) Windriver Debug, or (c) FTP port.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Schneider Electric Quantum Ethernet模块安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Schneider Electric Quantum Ethernet模块对(1) AUTCSE(2) AUT_CSE(3)fdrusers(4)ftpuser(5)loader(6)nic2212(7)nimrohs2212(8) nip2212(9)noe77111_v500(10) ntpupdate(11) pcfactory(12) sysdiag(13) target(14) test(15) USER和(16) webserver accounts使用了硬码方式输入密码,使得远程攻击者可借助
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2011-4859

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2011-4859

登录查看更多情报信息。

Same Patch Batch · n/a · 2011-12-17 · 7 CVEs total

CVE-2011-4860NOE 771设备ComputePassword函数信息泄露漏洞
CVE-2011-4861NOE 771设备modbus_125_handler函数安全漏洞
CVE-2011-3339SafeNet Sentinel HASP/ 7T IGSS HTML注入漏洞
CVE-2011-4141RSA SecurID Software Token 任意代码执行漏洞
CVE-2011-4602Pidgin 多个拒绝服务漏洞
CVE-2011-4603Pidgin SILC协议拒绝服务漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2011-4859

No comments yet


Leave a comment