Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-59vv-g2mq-64c5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An arbitrary code execution vulnerability in Kyland KPS2204 6 Port Managed Din-Rail Programmable Serial Device Servers Software Version:R0002.P05 allows remote attackers to upload a malicious script file by constructing a POST type request and writing a payload in the request parameters as an instruction to write a file.

An arbitrary code execution vulnerability in Kyland KPS2204 6 Port Managed Din-Rail Programmable Serial Device Servers Software Version:R0002.P05 allows remote attackers to upload a malicious script file by constructing a POST type request and writing a payload in the request parameters as an instruction to write a file.

EPSS

Процентиль: 85%
0.02481
Низкий

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 9.8
nvd
около 5 лет назад

An arbitrary code execution vulnerability in Kyland KPS2204 6 Port Managed Din-Rail Programmable Serial Device Servers Software Version:R0002.P05 allows remote attackers to upload a malicious script file by constructing a POST type request and writing a payload in the request parameters as an instruction to write a file.

EPSS

Процентиль: 85%
0.02481
Низкий

Дефекты

CWE-434