Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w3x5-65hg-jmhj

Опубликовано: 23 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9.4
CVSS3: 9.9

Описание

The TLS4B ATG system's SOAP-based interface is vulnerable due to its accessibility through the web services handler. This vulnerability enables remote attackers with valid credentials to execute system-level commands on the underlying Linux system. This could allow the attacker to achieve remote command execution, full shell access, and potential lateral movement within the network.

The TLS4B ATG system's SOAP-based interface is vulnerable due to its accessibility through the web services handler. This vulnerability enables remote attackers with valid credentials to execute system-level commands on the underlying Linux system. This could allow the attacker to achieve remote command execution, full shell access, and potential lateral movement within the network.

EPSS

Процентиль: 69%
0.006
Низкий

9.4 Critical

CVSS4

9.9 Critical

CVSS3

Дефекты

CWE-77

Связанные уязвимости

CVSS3: 9.9
nvd
4 месяца назад

The TLS4B ATG system's SOAP-based interface is vulnerable due to its accessibility through the web services handler. This vulnerability enables remote attackers with valid credentials to execute system-level commands on the underlying Linux system. This could allow the attacker to achieve remote command execution, full shell access, and potential lateral movement within the network.

EPSS

Процентиль: 69%
0.006
Низкий

9.4 Critical

CVSS4

9.9 Critical

CVSS3

Дефекты

CWE-77