Описание
AIMANAGER before B115 on MONITORAPP Application Insight Web Application Firewall (AIWAF) devices with Manager 2.1.0 allows OS Command Injection because of missing input validation on one of the parameters of an HTTP request.
Ссылки
- Third Party Advisory
- Third Party Advisory
- ProductVendor Advisory
- Third Party Advisory
- Third Party Advisory
- ProductVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия от b107 (включая) до b115 (исключая)
Одновременно
cpe:2.3:a:monitorapp:application_insight_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:monitorapp:application_insight_web_application_firewall:-:*:*:*:*:*:*:*
EPSS
Процентиль: 76%
0.00985
Низкий
8.1 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-20
Связанные уязвимости
github
больше 3 лет назад
AIMANAGER before B115 on MONITORAPP Application Insight Web Application Firewall (AIWAF) devices with Manager 2.1.0 allows OS Command Injection because of missing input validation on one of the parameters of an HTTP request.
EPSS
Процентиль: 76%
0.00985
Низкий
8.1 High
CVSS3
9.3 Critical
CVSS2
Дефекты
CWE-20