Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3m2w-jxjv-4wfv

Опубликовано: 15 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Command Injection vulnerability discovered in 4ipnet EAP-767 device v3.42.00 within the web interface of the device allows attackers with valid credentials to inject arbitrary shell commands to be executed by the device with root privileges.

Command Injection vulnerability discovered in 4ipnet EAP-767 device v3.42.00 within the web interface of the device allows attackers with valid credentials to inject arbitrary shell commands to be executed by the device with root privileges.

EPSS

Процентиль: 86%
0.03085
Низкий

8.8 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 8.8
nvd
почти 2 года назад

Command Injection vulnerability discovered in 4ipnet EAP-767 device v3.42.00 within the web interface of the device allows attackers with valid credentials to inject arbitrary shell commands to be executed by the device with root privileges.

EPSS

Процентиль: 86%
0.03085
Низкий

8.8 High

CVSS3

Дефекты

CWE-77