Логотип exploitDog
bind:CVE-2025-52548
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-52548

Количество 2

Количество 2

nvd логотип

CVE-2025-52548

5 месяцев назад

E3 Site Supervisor Control (firmware version < 2.31F01) contains a hidden API call in the application services that enables SSH and Shellinabox, which exist but are disabled by default. An attacker with admin access to the application services can utilize this API to enable remote access to the underlying OS.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-pf3m-qw97-hpvm

4 месяца назад

E3 Site Supervisor Control (firmware version < 2.31F01) contains a hidden API call in the application services that enables SSH and Shellinabox, which exist but are disabled by default. An attacker with admin access to the application services can utilize this API to enable remote access to the underlying OS.

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-52548

E3 Site Supervisor Control (firmware version < 2.31F01) contains a hidden API call in the application services that enables SSH and Shellinabox, which exist but are disabled by default. An attacker with admin access to the application services can utilize this API to enable remote access to the underlying OS.

CVSS3: 4.9
0%
Низкий
5 месяцев назад
github логотип
GHSA-pf3m-qw97-hpvm

E3 Site Supervisor Control (firmware version < 2.31F01) contains a hidden API call in the application services that enables SSH and Shellinabox, which exist but are disabled by default. An attacker with admin access to the application services can utilize this API to enable remote access to the underlying OS.

CVSS3: 4.9
0%
Низкий
4 месяца назад

Уязвимостей на страницу