Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-63f9-382x-9vr8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2). The affected application incorrectly neutralizes special elements when creating batch operations which could lead to command injection. An authenticated remote attacker with administrative privileges could exploit this vulnerability to execute arbitrary code on the system with system privileges.

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2). The affected application incorrectly neutralizes special elements when creating batch operations which could lead to command injection. An authenticated remote attacker with administrative privileges could exploit this vulnerability to execute arbitrary code on the system with system privileges.

EPSS

Процентиль: 90%
0.05085
Низкий

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.2
nvd
больше 4 лет назад

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2). The affected application incorrectly neutralizes special elements when creating batch operations which could lead to command injection. An authenticated remote attacker with administrative privileges could exploit this vulnerability to execute arbitrary code on the system with system privileges.

EPSS

Процентиль: 90%
0.05085
Низкий

Дефекты

CWE-78