Artica Proxy before 4.30.000000 Community Edition allows OS command injection via the Netbios name, Server domain name, dhclient_mac, Hostname, or Alias field. NOTE: this may overlap CVE-2020-10818.
References
Link Resource
https://github.com/InfoSec4Fun/CVE-2020-13159 Exploit Third Party Advisory
https://sourceforge.net/projects/artica-squid/files/ Product Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-06-22T17:39:12

Updated: 2020-06-22T17:39:12

Reserved: 2020-05-18T00:00:00


Link: CVE-2020-13159

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-06-22T18:15:11.323

Modified: 2020-07-01T18:18:13.830


Link: CVE-2020-13159

JSON object: View

cve-icon Redhat Information

No data.

CWE