Описание
Artica Proxy 3.06.200056 allows remote attackers to execute arbitrary commands as root by reading the ressources/settings.inc ldap_admin and ldap_password fields, using these credentials at logon.php, and then entering the commands in the admin.index.php command-line field.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:articatech:artica_proxy:3.06.200056:*:*:*:*:*:*:*
EPSS
Процентиль: 86%
0.02722
Низкий
7.2 High
CVSS3
9 Critical
CVSS2
Дефекты
CWE-522
Связанные уязвимости
CVSS3: 7.2
github
больше 3 лет назад
Artica Proxy 3.06.200056 allows remote attackers to execute arbitrary commands as root by reading the ressources/settings.inc ldap_admin and ldap_password fields, using these credentials at logon.php, and then entering the commands in the admin.index.php command-line field.
EPSS
Процентиль: 86%
0.02722
Низкий
7.2 High
CVSS3
9 Critical
CVSS2
Дефекты
CWE-522