CVE-2020-13448
PoC ×2—CVSS 3.1
8.8 high
EPSS
17%p97
Published
()
Modified
Description
QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8 allows an authenticated remote attacker to execute code on the server via command injection in the servicestart parameter.
- Vendors
- quickbox
- Products
- quickbox
- Weakness
- CWE-78
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.