Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xg6r-4v3x-wfq6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Dynacolor FCM-MB40 v1.2.0.0 devices allow remote attackers to execute arbitrary commands via a crafted parameter to a CGI script, as demonstrated by sed injection in cgi-bin/camctrl_save_profile.cgi (save parameter) and cgi-bin/ddns.cgi.

Dynacolor FCM-MB40 v1.2.0.0 devices allow remote attackers to execute arbitrary commands via a crafted parameter to a CGI script, as demonstrated by sed injection in cgi-bin/camctrl_save_profile.cgi (save parameter) and cgi-bin/ddns.cgi.

EPSS

Процентиль: 87%
0.03173
Низкий

Связанные уязвимости

CVSS3: 7.2
nvd
больше 6 лет назад

Dynacolor FCM-MB40 v1.2.0.0 devices allow remote attackers to execute arbitrary commands via a crafted parameter to a CGI script, as demonstrated by sed injection in cgi-bin/camctrl_save_profile.cgi (save parameter) and cgi-bin/ddns.cgi.

EPSS

Процентиль: 87%
0.03173
Низкий