'; } else{ echo ''; } echo '
|
|
|||
| Rule General Information |
|---|
| Release Date: | 2026-01-27 | |
| Rule Name: | Xiongmai Net-Surveillance Authentication Bypass Vulnerability | |
| Severity: | ||
| CVE ID: | ||
| Rule Protection Details |
|---|
| Description: | Hangzhou Xiongmai Information Technology Co., Ltd. primarily focuses on security surveillance modules, mainboards, associated software, and integrated product solutions. The Xiongmai Net-Surveillance series devices are affected by an authentication bypass vulnerability. By sending a specially crafted request, an attacker can retrieve the device's account credentials (username and password) and subsequently access protected resources, resulting in successful authentication bypass. | |
| Impact: | An unauthorized remote attacker can bypass authentication and gain access to the application with specially crafted requests. | |
| Affected OS: | Windows, Linux, Others | |
| Reference: | ||
| Solutions |
|---|
| Please refer to announcements or patches release by the vendor: https://www.xiongmaitech.com/ |