CVE-2019-25468
CRITICALNetGain EM Plus 10.1.68 - Unauthenticated Remote Code Execution via script_test.jsp Content Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-25468. PoCs published by azams.
AI-analyzed exploit summary This Go-based exploit targets a local file inclusion vulnerability in NetGain EM Plus <= v10.1.68, allowing unauthorized command execution via a crafted POST request to '/u/jsp/designer/script_test.jsp'. The exploit sends a shell command wrapped in markers ('0xdeadnoob') to extract the output.
Description
NetGain EM Plus 10.1.68 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary system commands by submitting malicious parameters to the script_test.jsp endpoint. Attackers can send POST requests with shell commands embedded in the 'content' parameter to execute code and retrieve command output.
Exploits (1)
This Go-based exploit targets a local file inclusion vulnerability in NetGain EM Plus <= v10.1.68, allowing unauthorized command execution via a crafted POST request to '/u/jsp/designer/script_test.jsp'. The exploit sends a shell command wrapped in markers ('0xdeadnoob') to extract the output.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H