Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3pxg-h8p3-7jfh

Опубликовано: 07 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.9

Описание

Kieback&Peter Neutrino-GLT product is used for building management. It's web component "SM70 PHWEB" is vulnerable to shell command injection via login form. The injected commands would execute with low privileges. The vulnerability has been fixed in version 9.40.02

Kieback&Peter Neutrino-GLT product is used for building management. It's web component "SM70 PHWEB" is vulnerable to shell command injection via login form. The injected commands would execute with low privileges. The vulnerability has been fixed in version 9.40.02

EPSS

Процентиль: 81%
0.01497
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-78

Связанные уязвимости

nvd
28 дней назад

Kieback&Peter Neutrino-GLT product is used for building management. It's web component "SM70 PHWEB" is vulnerable to shell command injection via login form. The injected commands would execute with low privileges. The vulnerability has been fixed in version 9.40.02

EPSS

Процентиль: 81%
0.01497
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-78