CVEs Blog | G5 Cyber Security

CVE-2020-24057 – The management website of the Verint S5120FD Verint_FW_0_42 unit features

The management website of the Verint S5120FD Verint_FW_0_42 unit features a CGI endpoint (‘ipfilter.cgi’) that allows the user to manage network filtering on the unit. This endpoint is vulnerable to a command injection. An authenticated attacker can leverage this issue to execute arbitrary commands as ‘root’.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-24057

Reference (s):

Exit mobile version