Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-27fx-q398-q8vr

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the user parameter during a ping action.

masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the user parameter during a ping action.

EPSS

Процентиль: 100%
0.94007
Критический

9.8 Critical

CVSS3

Дефекты

CWE-20
CWE-77

Связанные уязвимости

CVSS3: 9.8
nvd
почти 18 лет назад

masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the user parameter during a ping action.

EPSS

Процентиль: 100%
0.94007
Критический

9.8 Critical

CVSS3

Дефекты

CWE-20
CWE-77