mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-01 19:21:35 +02:00
767 B
767 B
CVE-2020-15922
Description
There is an OS Command Injection in Mida eFramework 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative (root) privileges. Authentication is required.
POC
Reference
- http://packetstormsecurity.com/files/159314/Mida-eFramework-2.8.9-Remote-Code-Execution.html
- https://elbae.github.io/jekyll/update/2020/07/14/vulns-01.html
Github
No PoCs found on GitHub currently.