'; } else{ echo ''; } echo '
|
|
|||
| Rule General Information |
|---|
| Release Date: | 2026-01-06 | |
| Rule Name: | Sangfor AD API login Remote Command Execution Vulnerability | |
| Severity: | ||
| CVE ID: | ||
| Rule Protection Details |
|---|
| Description: | Sangfor AD can provide users with a comprehensive solution including multi-data center load balancing, multi-link load balancing and server load balancing. The login interface of the Sangfor AD platform has an remote command execution vulnerability. Attackers can execute arbitrary commands through this vulnerability to obtain server permissions, which may lead to further attacks on the internal network. | |
| Impact: | An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software. | |
| Affected OS: | Windows, Linux, Others | |
| Reference: | ||
| Solutions |
|---|
| Please contact the software vendor to update the software patch. |