rConfig 3.9.4 and previous versions has unauthenticated devices.inc.php SQL injection. Because, by default, nodes' passwords are stored in cleartext, this vulnerability leads to lateral movement, granting an attacker access to monitored network devices.
References
Link | Resource |
---|---|
https://github.com/theguly/exploits/blob/master/CVE-2020-10548.py | Exploit Third Party Advisory |
https://theguly.github.io/2020/09/rconfig-3.9.4-multiple-vulnerabilities/ | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-06-04T03:24:33
Updated: 2020-11-13T19:57:34
Reserved: 2020-03-13T00:00:00
Link: CVE-2020-10548
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-06-04T04:15:13.087
Modified: 2021-12-06T17:22:04.187
Link: CVE-2020-10548
JSON object: View
Redhat Information
No data.
CWE