9

CVE-2020-8949

Exploit
Gocloud S2A_WL 4.2.7.16471, S2A 4.2.7.17278, S2A 4.3.0.15815, S2A 4.3.0.17193, S3A K2P MTK 4.2.7.16528, S3A 4.3.0.16572, and ISP3000 4.3.0.17190 devices allows remote attackers to execute arbitrary OS commands via shell metacharacters in a ping operation, as demonstrated by the cgi-bin/webui/admin/tools/app_ping/diag_ping/; substring.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Gocloud ≫ S2a Wl Firmware Version 4.2.7.16471
   Gocloud ≫ S2a Wl Version -
Gocloud ≫ S2a Firmware Version 4.2.7.17278
   Gocloud ≫ S2a Version -
Gocloud ≫ S2a Firmware Version 4.3.0.15815
   Gocloud ≫ S2a Version -
Gocloud ≫ S2a Firmware Version 4.3.0.17193
   Gocloud ≫ S2a Version -
Gocloud ≫ S3a K2p Mtk Firmware Version 4.2.7.16528
   Gocloud ≫ S3a K2p Mtk Version -
Gocloud ≫ S3a Firmware Version 4.3.0.16572
   Gocloud ≫ S3a Version -
Gocloud ≫ Isp3000 Firmware Version 4.3.0.17190
   Gocloud ≫ Isp3000 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.83% 0.848
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NIST 9 8 10
AV:N/AC:L/Au:S/C:C/I:C/A:C
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

https://sku11army.blogspot.com/2020/02/gocloud-rce-in-gocloud-routers.html
Third Party Advisory
Exploit