Juplink RX4-1500 v1.0.3 allows remote attackers to gain root access to the Linux subsystem via an unsanitized exec call (aka Command Line Injection), if the undocumented telnetd service is enabled and the attacker can authenticate as admin from the local network.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://cerne.xyz/bugs/CVE-2020-8797.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-04-23T18:01:22
Updated: 2024-08-04T10:12:10.494Z
Reserved: 2020-02-07T00:00:00
Link: CVE-2020-8797
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-04-23T18:15:11.903
Modified: 2024-11-21T05:39:27.510
Link: CVE-2020-8797
Redhat
No data.