ZeroHour

CVE-2018-6941

PoC ×3
CVSS 3.0
8.8 high
EPSS
3%p88
Published
()
Modified
Description

A /shell?cmd= CSRF issue exists in the HTTPD component of NAT32 v2.2 Build 22284 devices that can be exploited for Remote Code Execution in conjunction with XSS.

Vendors
nat32
Products
nat32
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.