PT-2020-17188 · Urve · Urve
Published
2020-12-23
·
Updated
2022-09-02
·
CVE-2020-29552
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
URVE Build 24.03.2020
Description
An issue was discovered in URVE. By using the " internal/pc/vpro.php?mac=0&ip=0&operation=0&usr=0&pass=0%3bpowershell+-c+" substring, it is possible to execute a Powershell command and redirect its output to a file under the web root.
Recommendations
As a temporary workaround, consider restricting access to the " internal/pc/vpro.php" endpoint until a patch is available.
Avoid using the
mac, ip, operation, usr, and pass parameters in the affected API endpoint until the issue is resolved.
Restrict the ability to execute Powershell commands through the vulnerable substring to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
OS Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Urve