目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1000 CNY

100.0%

SOUND4 Ltd. 厂商漏洞列表 / CVE 中文分析 22

SOUND4 Ltd. 厂商相关 22 条 CVE 漏洞,含 AI 中文分析、POC、CVSS 评分与受影响产品。

SOUND4 Ltd. 主要提供数字音频处理解决方案及开源音频库,广泛用于流媒体与广播领域。其软件组件历史上常暴露远程代码执行、跨站脚本及路径遍历等高危漏洞,累计收录 CVE 达 22 条。这些缺陷多源于输入验证不足或配置错误,曾导致服务中断或数据泄露。建议用户及时更新补丁,强化访问控制,以应对潜在的安全风险,确保音频服务稳定性。

CVE IDタイトルCVSS深刻度公開日
CVE-2022-50796 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Unauthenticated Remote Code Execution via upload.cgi — Impact/Pulse/FirstCWE-22 9.8 Critical2025-12-30
CVE-2022-50794 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Unauthenticated Command Injection via Username — Impact/Pulse/FirstCWE-78 9.8 Critical2025-12-30
CVE-2022-50795 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Conditional Command Injection via traceroute.php — Impact/Pulse/FirstCWE-78 7.8 High2025-12-30
CVE-2022-50793 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Authenticated Command Injection via www-data-handler.php — Impact/Pulse/FirstCWE-78 8.8 High2025-12-30
CVE-2022-50792 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Unauthenticated File Disclosure Vulnerability — Impact/Pulse/FirstCWE-22 7.5 High2025-12-30
CVE-2022-50791 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Conditional Command Injection via ping.php — Impact/Pulse/FirstCWE-78 7.8 High2025-12-30
CVE-2022-50789 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Conditional Command Injection via dns.php — Impact/Pulse/FirstCWE-78 7.8 High2025-12-30
CVE-2022-50790 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Unauthenticated Radio Stream Disclosure — Impact/Pulse/FirstCWE-306 7.5 High2025-12-30
CVE-2022-50787 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Unauthenticated Stored Cross-Site Scripting — Impact/Pulse/FirstCWE-79 7.2 High2025-12-30
CVE-2022-50788 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Information Disclosure via Log Directory — Impact/Pulse/FirstCWE-548 7.5 High2025-12-30
CVE-2022-50696 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Hardcoded Credentials Authentication Bypass — Impact/Pulse/FirstCWE-798 9.8 Critical2025-12-30
CVE-2022-50695 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x ICMP Flood Attack via Network Commands — Impact/Pulse/FirstCWE-770 7.5 High2025-12-30
CVE-2022-50692 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x Insufficient Session Expiration Vulnerability — Impact/Pulse/FirstCWE-613 7.5 High2025-12-30
CVE-2022-50694 SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x SQL Injection via Username Parameter — Impact/Pulse/FirstCWE-89 9.8 Critical2025-12-30
CVE-2023-53962 SOUND4 IMPACT/FIRST/PULSE/Eco v2.x Unauthenticated Directory Traversal File Write — Impact/Pulse/FirstCWE-22 7.5 High2025-12-22
CVE-2023-53963 SOUND4 IMPACT/FIRST/PULSE/Eco v2.x Unauthenticated Remote Command Injection — Impact/Pulse/FirstCWE-78 9.8 Critical2025-12-22
CVE-2023-53964 SOUND4 IMPACT/FIRST/PULSE/Eco v2.x Unauthenticated Factory Reset Vulnerability — Impact/Pulse/FirstCWE-306 9.8 Critical2025-12-22
CVE-2023-53961 SOUND4 IMPACT/FIRST/PULSE/Eco v2.x Cross-Site Request Forgery — Impact/Pulse/FirstCWE-352 4.3 Medium2025-12-22
CVE-2023-53960 SOUND4 IMPACT/FIRST/PULSE/Eco v2.x SQL Injection via Authentication Bypass — Impact/Pulse/FirstCWE-89 9.8 Critical2025-12-22
CVE-2023-53955 SOUND4 IMPACT/FIRST/PULSE/Eco v2.x Authorization Bypass via Insecure Object References — Impact/Pulse/FirstCWE-639 9.8 Critical2025-12-22
CVE-2023-53965 SOUND4 Server Service 4.1.102 Local Privilege Escalation via Unquoted Service Path — SOUND4 Server ServiceCWE-428 8.4 High2025-12-22
CVE-2023-53966 SOUND4 LinkAndShare Transmitter 1.1.2 Format String Stack Buffer Overflow — SOUND4 LinkAndShare TransmitterCWE-134 9.8 Critical2025-12-22

本页汇总了 SOUND4 Ltd. 厂商截至目前公开的全部 22 条 CVE 漏洞。每条漏洞均包含 CVSS 评分、CWE 弱点分类、受影响产品与参考链接,并附带 AI 生成的中文分析以便快速判断风险。