HTTP RULE(RULE ID:338618)

Rule General Information
Release Date: 2024-12-24
Rule Name: Anysec Gateway arping Background Command Execution Vulnerability
Severity: High
CVE ID:
Rule Protection Details
Description: Shenzhen Zhongke Weiwei Technology Co., Ltd. is a high-tech enterprise focusing on the development and production of network security products. The arping background remote command execution vulnerability exists on the anysec security gateway. Attackers can exploit the vulnerability to obtain the gateway permission.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.