Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q74f-hvfr-7jqc

Опубликовано: 24 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Korenix Jetwave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection via /goform/formSysCmd. An attacker an modify the sysCmd parameter in order to execute commands as root.

Korenix Jetwave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection via /goform/formSysCmd. An attacker an modify the sysCmd parameter in order to execute commands as root.

EPSS

Процентиль: 81%
0.01498
Низкий

8.8 High

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 8.8
nvd
почти 3 года назад

Korenix Jetwave 4200 Series 1.3.0 and JetWave 3000 Series 1.6.0 are vulnerable to Command Injection via /goform/formSysCmd. An attacker an modify the sysCmd parameter in order to execute commands as root.

EPSS

Процентиль: 81%
0.01498
Низкий

8.8 High

CVSS3

Дефекты

CWE-77