CVEs Blog | G5 Cyber Security

CVE-2020-15715 – rConfig 3.9.5 could allow a remote authenticated attacker to execute arbi

rConfig 3.9.5 could allow a remote authenticated attacker to execute arbitrary code on the system, because of an error in the search.crud.php script. An attacker could exploit this vulnerability using the nodeId parameter.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15715

Reference (s):

Exit mobile version