CVE漏洞中文网

0DayBank一个专门收集整理全球互联网漏洞的公开发布网站
  1. 首页
  2. 漏洞列表
  3. 正文

Web server Serviio Media Server Multiple Security Vulnerabilities

2017年8月13日 2655点热度 0人点赞 0条评论

漏洞类别:Web server

漏洞等级:

漏洞信息

Serviio is a free media server. It allows you to stream your media files (music, video or images) to renderer devices (e.g. a TV set, Bluray player, games console or mobile phone) on your connected home network.

The vulnerabilities found in Serviio Media Server are:
- Remote Code Execution
- Local Privilege Escalation
- Unauthenticated Password Modification
- Information Disclosure
- DOM-Based Cross-Site Scripting (XSS)
Affected versions:
Serviio Media Server 1.8.0.0 PRO, 1.7.1, 1.7.0, 1.6.1.

QID Detection Logic (Unauthenticated):
This QID matches directory information in the response by sending a crafted HTTP GET request to target.

漏洞危害

Successful exploitation could allow an attacker to compromise the targeted system.

解决方案

The vendor has not confirmed the vulnerability and no patch has been released to specifically fix the vulnerability , however a newer version of software is available for download.

0daybank

标签: 暂无
最后更新:2022年12月28日

小助手

这个人很懒,什么都没留下

点赞
< 上一篇
下一篇 >

文章评论

您需要 登录 之后才可以评论

COPYRIGHT © 2024 www.pdr.cn CVE漏洞中文网. ALL RIGHTS RESERVED.

鲁ICP备2022031030号

联系邮箱:wpbgssyubnmsxxxkkk@proton.me