mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-23 23:14:03 +02:00
819 B
819 B
CVE-2020-7953
Description
An issue was discovered in OpServices OpMon 9.3.2. Without authentication, it is possible to read server files (e.g., /etc/passwd) due to the use of the nmap -iL (aka input file) option.
POC
Reference
- https://medium.com/%40ph0rensic
- https://medium.com/%40ph0rensic/three-cves-on-opmon-3ca775a262f5
- https://medium.com/@ph0rensic
- https://medium.com/@ph0rensic/three-cves-on-opmon-3ca775a262f5