Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Improper input validation at one of the endpoints of Eaton xComfort ECI's web interface, could lead into an attacker with network access to the device executing privileged user commands. As cybersecurity standards continue to evolve and to meet our requirements today, Eaton has decided to discontinue the product. Upon retirement or end of support, there will be no new security updates, non-security updates, or paid assisted support options, or online technical content updates.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
输入验证不恰当
Vulnerability Title
Eaton xComfort ECI 安全漏洞
Vulnerability Description
Eaton xComfort ECI是美国伊顿(Eaton)公司的一个以太网通信接口设备。 Eaton xComfort ECI存在安全漏洞,该漏洞源于Web界面端点输入验证不当,可能导致具有网络访问权限的攻击者执行特权用户命令。
CVSS Information
N/A
Vulnerability Type
N/A