Record summary

CVE-2014-3085 has a selected CVSS score of 7.1; EIP currently links 1 catalogued exploit.

Description

systest.php on IBM GCM16 and GCM32 Global Console Manager switches with firmware before 1.20.20.23447 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the lpres parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBIBM GCM16/32 1.20.0.22575 - Multiple VulnerabilitiesExploitDB exploitby Alejandro Alvarez BravoNot analyzed1 file

linked to 3 vulnerabilities

ExploitDB

PoC details

References

5