Lucene search

K
githubexploit8FFF6862-F858-53DB-8EF0-9CF15974E563
HistoryApr 12, 2022 - 2:45 a.m.

Exploit for Missing Authentication for Critical Function in Terra-Master Terramaster Operating System

2022-04-1202:45:56
361
terramaster
unauthenticated remote command execution
webnasips
php object instantiation
cve-2022-24990
vulnerability
remote attacker
arbitrary commands
input validation
command injection
security patch
terra-master tos
cnvd
cnnvd

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS

0.94

Percentile

99.2%

  • CVE-2022-24990

** Description
- POC for CVE-2022-…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

EPSS

0.94

Percentile

99.2%