Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-36885

Опубликовано: 10 дек. 2025
Источник: nvd
CVSS3: 9.8
EPSS Низкий

Описание

Sony IPELA Network Camera 1.82.01 contains a stack buffer overflow vulnerability in the ftpclient.cgi endpoint that allows remote attackers to execute arbitrary code. Attackers can exploit the vulnerability by sending a crafted POST request with oversized data to the FTP client functionality, potentially causing remote code execution or denial of service.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:sony:snc-dh120t_firmware:*:*:*:*:*:*:*:*
Версия до 1.82.01 (включая)
cpe:2.3:h:sony:snc-dh120t:-:*:*:*:*:*:*:*

EPSS

Процентиль: 54%
0.00308
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 9.8
github
около 2 месяцев назад

Sony IPELA Network Camera 1.82.01 contains a stack buffer overflow vulnerability in the ftpclient.cgi endpoint that allows remote attackers to execute arbitrary code. Attackers can exploit the vulnerability by sending a crafted POST request with oversized data to the FTP client functionality, potentially causing remote code execution or denial of service.

EPSS

Процентиль: 54%
0.00308
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-787