Логотип exploitDog
bind:CVE-2020-13167
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-13167

Количество 2

Количество 2

nvd логотип

CVE-2020-13167

больше 5 лет назад

Netsweeper through 6.4.3 allows unauthenticated remote code execution because webadmin/tools/unixlogin.php (with certain Referer headers) launches a command line with client-supplied parameters, and allows injection of shell metacharacters.

CVSS3: 9.8
EPSS: Критический
github логотип

GHSA-cq58-5c97-qv25

больше 3 лет назад

Netsweeper through 6.4.3 allows unauthenticated remote code execution because webadmin/tools/unixlogin.php (with certain Referer headers) launches a command line with client-supplied parameters, and allows injection of shell metacharacters.

EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-13167

Netsweeper through 6.4.3 allows unauthenticated remote code execution because webadmin/tools/unixlogin.php (with certain Referer headers) launches a command line with client-supplied parameters, and allows injection of shell metacharacters.

CVSS3: 9.8
93%
Критический
больше 5 лет назад
github логотип
GHSA-cq58-5c97-qv25

Netsweeper through 6.4.3 allows unauthenticated remote code execution because webadmin/tools/unixlogin.php (with certain Referer headers) launches a command line with client-supplied parameters, and allows injection of shell metacharacters.

93%
Критический
больше 3 лет назад

Уязвимостей на страницу