Описание
Argument injection vulnerability in HyperAccess 8.4 allows user-assisted remote attackers to execute arbitrary vbscript and commands via the /r option in a telnet:// URI, which is configured to use hawin32.exe.
Ссылки
- Broken LinkVendor Advisory
- Third Party Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
- Broken LinkVendor Advisory
- Third Party Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:hilgraeve:hyperaccess:8.4:*:*:*:*:*:*:*
EPSS
Процентиль: 88%
0.03928
Низкий
6.8 Medium
CVSS2
Дефекты
CWE-88
Связанные уязвимости
github
почти 4 года назад
Argument injection vulnerability in HyperAccess 8.4 allows user-assisted remote attackers to execute arbitrary vbscript and commands via the /r option in a telnet:// URI, which is configured to use hawin32.exe.
EPSS
Процентиль: 88%
0.03928
Низкий
6.8 Medium
CVSS2
Дефекты
CWE-88