EVERTZ devices 3080IPX exe-guest-v1.2-r26125, 7801FC 1.3 Build 27, and 7890IXG V494 are vulnerable to Arbitrary File Upload, allowing an authenticated attacker to upload a webshell or overwrite any critical system files.
References
Link | Resource |
---|---|
https://cacharros-inthewild.blogspot.com/2023/07/the-3080ipx-is-integrated-multicast.html | Exploit |
https://sku11army.blogspot.com/2020/02/evertz-path-transversal-arbitrary-file.html | Permissions Required |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-07-18T00:00:00
Updated: 2023-07-18T00:00:00
Reserved: 2020-08-13T00:00:00
Link: CVE-2020-22159
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-07-18T18:15:11.503
Modified: 2023-07-28T13:52:37.537
Link: CVE-2020-22159
JSON object: View
Redhat Information
No data.
CWE