Odkryto podatność w i-Drive i11 i i12 do wersji 20250227, ocenioną jako krytyczna. Problem dotyczy nieznanej funkcjonalności komponentu Device Setting Handler, którego manipulacja prowadzi do nieprawidłowej kontroli dostępu do interfejsu rejestrów. Atak wymaga lokalnej sieci, ma wysoką złożoność i jest trudny do realizacji. Nie udało się zidentyfikować obecnego opiekuna produktu, który należy uznać za wycofany z użytku.
▸ Pokaż oryginał (EN)
A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been rated as critical. Affected by this issue is some unknown functionality of the component Device Setting Handler. The manipulation leads to improper access control for register interface. The attack needs to be done within the local network. The complexity of an attack is rather high. The exploitation is known to be difficult. It was not possible to identify the current maintainer of the product. It must be assumed that the product is end-of-life.
CVSS:4.0/AV:A/AC:H/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XI Drive I11
HWI-Drivewszystkie wersjeI Drive I11 Firmware
OSI-Drive≤ 20250227I Drive I12
HWI-Drivewszystkie wersjeI Drive I12 Firmware
OSI-Drive≤ 20250227
Powiązane podatności
A vulnerability was found in i-Drive i11 and i12 up to 20250227. It has been declared as problematic. Affected...
W systemach i-Drive i11 i i12 do wersji 20250227 odkryto podatność klasyfikowaną jako problematyczną. Dotyczy ...
W i-Drive i11 i i12 do wersji 20250227 odkryto lukę klasyfikowaną jako problematyczną. Problem dotyczy nieznan...
W produkcie i-Drive i11 i i12 do wersji 20250227 odkryto podatność klasyfikowaną jako problematyczną. Dotyczy ...
Buffer overflow in the HTTP proxy server for the i-drive Filo software allows remote attackers to execute arbi...