CVE-2020-8654
PoC ×3—CVSS 3.1
8.8 high
EPSS
91%p100
Published
()
Modified
Description
An issue was discovered in EyesOfNetwork 5.3. An authenticated web user with sufficient privileges could abuse the AutoDiscovery module to run arbitrary OS commands via the /module/module_frame/index.php autodiscovery.php target field.
- Vendors
- eyesofnetwork
- Products
- eyesofnetwork
- Weakness
- CWE-78
- Vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.