Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h84w-4wfq-6h9c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

OS Command Injection vulnerability when changing date settings or hostname using web GUI of Nozomi Networks Guardian and CMC allows authenticated administrators to perform remote code execution. This issue affects: Nozomi Networks Guardian 20.0.7.3 version 20.0.7.3 and prior versions. Nozomi Networks CMC 20.0.7.3 version 20.0.7.3 and prior versions.

OS Command Injection vulnerability when changing date settings or hostname using web GUI of Nozomi Networks Guardian and CMC allows authenticated administrators to perform remote code execution. This issue affects: Nozomi Networks Guardian 20.0.7.3 version 20.0.7.3 and prior versions. Nozomi Networks CMC 20.0.7.3 version 20.0.7.3 and prior versions.

EPSS

Процентиль: 86%
0.02713
Низкий

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.2
nvd
почти 5 лет назад

OS Command Injection vulnerability when changing date settings or hostname using web GUI of Nozomi Networks Guardian and CMC allows authenticated administrators to perform remote code execution. This issue affects: Nozomi Networks Guardian 20.0.7.3 version 20.0.7.3 and prior versions. Nozomi Networks CMC 20.0.7.3 version 20.0.7.3 and prior versions.

EPSS

Процентиль: 86%
0.02713
Низкий

Дефекты

CWE-78