目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

Copeland LP 厂商漏洞列表 / CVE 中文分析 10

Copeland LP 厂商相关 10 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

Copeland LP 是一家专注于工业控制系统的安全厂商,其产品广泛应用于关键基础设施领域。历史上,其产品曾曝出多个远程代码执行、权限提升和缓冲区溢出漏洞,这些漏洞多源于输入验证不足和配置管理缺陷。2022年,其某系列固件被曝存在多个高危漏洞,可导致攻击者完全控制系统,厂商随后发布了紧急补丁。

CVE IDタイトルCVSS深刻度公開日
CVE-2025-52551 Proprietary protocol allows for unauthenticated file operations — E2 Facility Management SystemCWE-306 9.8AICriticalAI2025-09-02
CVE-2025-52550 Firmware upgrade packages are unsigned — E3 Supervisory ControlCWE-347 4.9AIMediumAI2025-09-02
CVE-2025-52549 Predictable root linux password generation — E3 Supervisory ControlCWE-522 9.8AICriticalAI2025-09-02
CVE-2025-52548 Enabling SSH and Shellinabox on the vulnerable machine — E3 Supervisory ControlCWE-1242 7.2AIHighAI2025-09-02
CVE-2025-52547 DoS to the application services — E3 Supervisory ControlCWE-20 7.5AIHighAI2025-09-02
CVE-2025-52546 Stored XSS by uploading a specially crafted floor plan file — E3 Supervisory ControlCWE-434 6.1AIMediumAI2025-09-02
CVE-2025-52545 Privilege escalation in the application services — E3 Supervisory ControlCWE-522 9.1AICriticalAI2025-09-02
CVE-2025-52544 Arbitrary read file from the filesystem — E3 Supervisory ControlCWE-20 7.5AIHighAI2025-09-02
CVE-2025-52543 Login to the application services using only the password hash — E3 Supervisory ControlCWE-836 9.8AICriticalAI2025-09-02
CVE-2025-6519 Consistent predictable generation of the password for the default admin user "ONEDAY" to the application services — E3 Supervisory ControlCWE-522 9.8AICriticalAI2025-09-02

本页汇总了 Copeland LP 厂商截至目前公开的全部 10 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。