PT-2020-14776 · Telmat · Telmat Accesslog

Podalirius

·

Published

2020-09-24

·

Updated

2022-04-28

·

CVE-2020-16148

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Telmat AccessLog versions prior to 6.0 (TAL 20180415)
Description The issue concerns the ping page of the administration panel, where an authenticated code injection attack can be performed over the network, potentially leading to root shell access.
Recommendations For Telmat AccessLog versions prior to 6.0 (TAL 20180415), update to a version newer than 6.0 to resolve the issue.

Exploit

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-16148

Affected Products

Telmat Accesslog