ID EDB-ID-48856
CVSS 3.0 9.8
Cloudbric Detection Yes
Vulnerability Type Remote Code Execution
Published Date 2020-10-05
Updated Date 2020-11-19
Vendor 7.07
Description Improper input sanitization of the parameter "community" on the page snmp-x.php would allow a remote attacker to inject command directives into the file snmpd.conf. This would allow executing commands on the target server by injecting an "extend" or "exec" SNMPD directive and querying the snmp daemon of the server for the correct OID.
