CVE-2020-26124
Severity CVSS v4.0:
Pending analysis
Type:
CWE-94
Code Injection
Publication date:
02/10/2020
Last modified:
06/01/2022
Description
openmediavault before 4.1.36 and 5.x before 5.5.12 allows authenticated PHP code injection attacks, via the sortfield POST parameter of rpc.php, because json_encode_safe is not used in config/databasebackend.inc. Successful exploitation allows arbitrary command execution on the underlying operating system as root.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH
Base Score 2.0
9.00
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:openmediavault:openmediavault:*:*:*:*:*:*:*:* | 4.1.36 (excluding) | |
| cpe:2.3:a:openmediavault:openmediavault:*:*:*:*:*:*:*:* | 5.0.0 (including) | 5.5.12 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



