mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-01 06:51:35 +02:00
750 B
750 B
CVE-2020-21883
Description
Unibox U-50 2.4 and UniBox Enterprise Series 2.4 and UniBox Campus Series 2.4 contain a OS command injection vulnerability in /tools/ping, which can leads to complete device takeover.
POC
Reference
- https://s3curityb3ast.github.io/KSA-Dev-009.txt
- https://www.mail-archive.com/fulldisclosure@seclists.org/msg07140.html