Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-75cp-gjjh-3r55

Опубликовано: 23 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.5

Описание

An OS command injection vulnerability has been discovered in the Vitogate 300, which can be exploited by malicious users to compromise affected installations. Specifically, the /cgi-bin/vitogate.cgi endpoint is affected, when the form JSON parameter is set to form-0-2. The vulnerability stems from the fact that that function at offset 0x21c24 does not properly sanitize supplied input before interpolating it into a format string which gets passed to popen(). Consequently, an authenticated attacker is able to inject arbitrary OS commands and thus gain code execution on affected devices.

An OS command injection vulnerability has been discovered in the Vitogate 300, which can be exploited by malicious users to compromise affected installations. Specifically, the /cgi-bin/vitogate.cgi endpoint is affected, when the form JSON parameter is set to form-0-2. The vulnerability stems from the fact that that function at offset 0x21c24 does not properly sanitize supplied input before interpolating it into a format string which gets passed to popen(). Consequently, an authenticated attacker is able to inject arbitrary OS commands and thus gain code execution on affected devices.

EPSS

Процентиль: 68%
0.00568
Низкий

8.5 High

CVSS4

Дефекты

CWE-78

Связанные уязвимости

nvd
5 месяцев назад

An OS command injection vulnerability has been discovered in the Vitogate 300, which can be exploited by malicious users to compromise affected installations. Specifically, the `/cgi-bin/vitogate.cgi` endpoint is affected, when the `form` JSON parameter is set to `form-0-2`. The vulnerability stems from the fact that that function at offset 0x21c24 does not properly sanitize supplied input before interpolating it into a format string which gets passed to `popen()`. Consequently, an authenticated attacker is able to inject arbitrary OS commands and thus gain code execution on affected devices.

EPSS

Процентиль: 68%
0.00568
Низкий

8.5 High

CVSS4

Дефекты

CWE-78