Extreme Networks Aerohive HiveOS...

- AV AC AU C I A
发布: 2020-05-06
修订: 2024-12-11

Extreme Networks Aerohive HiveOS versions 11.x and below remote denial of service exploit. An unauthenticated malicious user can trigger a denial of service (DoS) attack when sending specific application layer packets towards the Aerohive NetConfig UI. This proof of concept exploit renders the application unusable for 305 seconds or 5 minutes with a single HTTP request using the action.php5 script calling the CliWindow function thru the _page parameter, denying access to the web server hive user interface.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息