Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-21934

EPSS 1.19% · P79
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-21934

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this at ‘imei_filter’ parameter. This can be done as any authenticated user or through cross-site request forgery.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
SQL命令中使用的特殊元素转义处理不恰当(SQL注入)
Source: NVD (National Vulnerability Database)
Vulnerability Title
Advantech R-SeeNet SQL注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Advantech R-SeeNet是中国台湾研华(Advantech)公司的一个工业监控软件。该软件基于 snmp 协议进行监控平台,并且适用于 Linux、Windows 平台。 Advantech R-SeeNet 2.4.15存在SQL注入漏洞,该漏洞源于研华R-SeeNet 2.4.15(30.07.2021)的用户列表页面存在多个可利用的SQL注入漏洞。一个特别设计的HTTP请求可能导致SQL注入。攻击者可利用该漏洞可以使用管理帐户发出经过身份验证的HTTP请求,或通过跨站点请求伪造来触发这些
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-Advantech Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021) -

II. Public POCs for CVE-2021-21934

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-21934

登录查看更多情报信息。

Same Patch Batch · n/a · 2021-12-22 · 105 CVEs total

CVE-2021-404189.8 CRITICALBlackmagic Design DaVinci Resolve 安全漏洞
CVE-2021-404179.8 CRITICALBlackmagic Design DaVinci Resolve 输入验证错误漏洞
CVE-2021-21911Advantech R-SeeNet 安全漏洞
CVE-2021-21923Advantech R-SeeNet SQL注入漏洞
CVE-2021-21922Advantech R-SeeNet SQL注入漏洞
CVE-2021-21921Advantech R-SeeNet SQL注入漏洞
CVE-2021-21920Advantech R-SeeNet SQL注入漏洞
CVE-2021-21919Advantech R-SeeNet SQL注入漏洞
CVE-2021-21918Advantech R-SeeNet SQL注入漏洞
CVE-2021-21917Advantech R-SeeNet SQL注入漏洞
CVE-2021-21916Advantech R-SeeNet SQL注入漏洞
CVE-2021-21915Advantech R-SeeNet SQL注入漏洞
CVE-2021-21912Advantech R-SeeNet 安全漏洞
CVE-2021-21901Garrett Metal Detectors 缓冲区错误漏洞
CVE-2021-21904Garrett Metal Detectors 路径遍历漏洞
CVE-2021-21903Garrett Metal Detectors 缓冲区错误漏洞
CVE-2021-21902Garrett Metal Detectors 授权问题漏洞
CVE-2021-21905Garrett Metal Detectors 缓冲区错误漏洞
CVE-2021-21896Lantronix PremierWave 2050 路径遍历漏洞
CVE-2021-21895Lantronix PremierWave 2050 路径遍历漏洞

Showing top 20 of 105 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2021-21934

No comments yet


Leave a comment