Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pxc4-295p-35qq

Опубликовано: 14 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands.

Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands.

EPSS

Процентиль: 99%
0.76347
Высокий

7.2 High

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 7.2
nvd
16 дней назад

Post-authentication improper control of generation of code ('Code Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands.

CVSS3: 7.2
fstec
17 дней назад

Уязвимость консоли управления устройством микропрограммного обеспечения межсетевых экранов SonicWall серии SMA 1000, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 99%
0.76347
Высокий

7.2 High

CVSS3

Дефекты

CWE-94