Описание
conf_datetime in Secudos DOMOS 5.8 allows remote attackers to execute arbitrary commands as root via shell metacharacters in the zone field (obtained from the web interface).
conf_datetime in Secudos DOMOS 5.8 allows remote attackers to execute arbitrary commands as root via shell metacharacters in the zone field (obtained from the web interface).
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2020-14293
- https://github.com/patrickhener/CVE-2020-14293
- https://www.secudos.de/en/news-en/domos-release-5-9
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2020-025.txt
- https://www.syss.de/pentest-blog/syss-2020-024-und-syss-2020-025-zwei-schwachstellen-in-file-transfer-loesung-von-qiata
- http://seclists.org/fulldisclosure/2020/Sep/51
EPSS
Процентиль: 96%
0.28802
Средний
CVE ID
Связанные уязвимости
CVSS3: 7.5
nvd
больше 5 лет назад
conf_datetime in Secudos DOMOS 5.8 allows remote attackers to execute arbitrary commands as root via shell metacharacters in the zone field (obtained from the web interface).
EPSS
Процентиль: 96%
0.28802
Средний