CVE-2020-28250

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
06/11/2020
Last modified:
19/11/2020

Description

Cellinx NVT Web Server 5.0.0.014b.test 2019-09-05 allows a remote user to run commands as root via SetFileContent.cgi because authentication is on the client side.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cellinx:nvt_web_server:5.0.0.014b:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools