Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mqpr-6g77-83pr

Опубликовано: 12 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

A remote command injection issues exists in the web server of the Kratos SpectralNet device with SpectralNet Narrowband (NB) before 1.7.5. As an admin user, an attacker can send a crafted password in order to execute Linux commands as the root user.

A remote command injection issues exists in the web server of the Kratos SpectralNet device with SpectralNet Narrowband (NB) before 1.7.5. As an admin user, an attacker can send a crafted password in order to execute Linux commands as the root user.

EPSS

Процентиль: 51%
0.00276
Низкий

7.2 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 7.2
nvd
больше 2 лет назад

A remote command injection issues exists in the web server of the Kratos SpectralNet device with SpectralNet Narrowband (NB) before 1.7.5. As an admin user, an attacker can send a crafted password in order to execute Linux commands as the root user.

EPSS

Процентиль: 51%
0.00276
Низкий

7.2 High

CVSS3

Дефекты

CWE-77