ZeroHour

CVE-2020-13448

PoC ×2
CVSS 3.1
8.8 high
EPSS
17%p97
Published
()
Modified
Description

QuickBox Community Edition through 2.5.5 and Pro Edition through 2.1.8 allows an authenticated remote attacker to execute code on the server via command injection in the servicestart parameter.

Vendors
quickbox
Products
quickbox
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.