Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jmmc-j836-r5v7

Опубликовано: 24 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 8.8

Описание

Microhard Systems IPn4G 1.1.0 contains multiple authenticated remote code execution vulnerabilities in the admin interface that allow attackers to create crontab jobs and modify system startup scripts. Attackers can exploit hidden admin features to execute arbitrary commands with root privileges, including starting services, disabling firewalls, and writing files to the system.

Microhard Systems IPn4G 1.1.0 contains multiple authenticated remote code execution vulnerabilities in the admin interface that allow attackers to create crontab jobs and modify system startup scripts. Attackers can exploit hidden admin features to execute arbitrary commands with root privileges, including starting services, disabling firewalls, and writing files to the system.

EPSS

Процентиль: 51%
0.00277
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 8.8
nvd
около 2 месяцев назад

Microhard Systems IPn4G 1.1.0 contains multiple authenticated remote code execution vulnerabilities in the admin interface that allow attackers to create crontab jobs and modify system startup scripts. Attackers can exploit hidden admin features to execute arbitrary commands with root privileges, including starting services, disabling firewalls, and writing files to the system.

EPSS

Процентиль: 51%
0.00277
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-266