Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-prv3-9p5f-cqv2

Опубликовано: 15 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

A command injection vulnerability in the Nmap diagnostic tool in the admin web console of Extron SMP 111 <=3.01, SMP 351 <=2.16, and SMP 352 <= 2.16 allows a remote authenticated attacker with administrative privileges to execute arbitrary commands as root on the underlying operating system.

A command injection vulnerability in the Nmap diagnostic tool in the admin web console of Extron SMP 111 <=3.01, SMP 351 <=2.16, and SMP 352 <= 2.16 allows a remote authenticated attacker with administrative privileges to execute arbitrary commands as root on the underlying operating system.

EPSS

Процентиль: 79%
0.01283
Низкий

7.2 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 7.2
nvd
10 месяцев назад

A command injection vulnerability in the Nmap diagnostic tool in the admin web console of Extron SMP 111 <=3.01, SMP 351 <=2.16, SMP 352 <= 2.16, and SME 211 <= 3.02, allows a remote authenticated attacker to execute arbitrary commands as root on the underlying operating system.

EPSS

Процентиль: 79%
0.01283
Низкий

7.2 High

CVSS3

Дефекты

CWE-94