Логотип exploitDog
bind: "CVE-2022-50796"
Консоль
Логотип exploitDog

exploitDog

bind: "CVE-2022-50796"

Количество 2

Количество 2

nvd логотип

CVE-2022-50796

около 1 месяца назад

SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an unauthenticated remote code execution vulnerability in the firmware upload functionality with path traversal flaw. Attackers can exploit the upload.cgi script to write malicious files to the system with www-data permissions, enabling unauthorized access and code execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-hv34-rhhr-q53f

около 1 месяца назад

SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an unauthenticated remote code execution vulnerability in the firmware upload functionality with path traversal flaw. Attackers can exploit the upload.cgi script to write malicious files to the system with www-data permissions, enabling unauthorized access and code execution.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-50796

SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an unauthenticated remote code execution vulnerability in the firmware upload functionality with path traversal flaw. Attackers can exploit the upload.cgi script to write malicious files to the system with www-data permissions, enabling unauthorized access and code execution.

CVSS3: 9.8
1%
Низкий
около 1 месяца назад
github логотип
GHSA-hv34-rhhr-q53f

SOUND4 IMPACT/FIRST/PULSE/Eco <=2.x contains an unauthenticated remote code execution vulnerability in the firmware upload functionality with path traversal flaw. Attackers can exploit the upload.cgi script to write malicious files to the system with www-data permissions, enabling unauthorized access and code execution.

CVSS3: 7.5
1%
Низкий
около 1 месяца назад

Уязвимостей на страницу