Products

Showing 1 vulnerability on this page

Signals CISA KEV Ransomware Nuclei
intelliantech vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

intelliantech aptus_web Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

Intellian Aptus Web 1.24 allows remote attackers to execute arbitrary OS commands via the Q field within JSON data to the cgi-bin/libagent.cgi URI. NOTE: a valid sid cookie for a login to the intellian default account might be needed.

CWE-78Jan 25, 20201 related artifact
CVSS9.8v3.1EPSS82.5%PoCs2SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX