Record summary

CVE-2020-13638 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.

Description

lib/crud/userprocess.php in rConfig 3.9.x before 3.9.7 has an authentication bypass, leading to administrator account creation. This issue has been fixed in 3.9.7.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Dec 19, 2023 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

Affected products and versions

1
ProductSourceVersion rangeStatus
VulnCheckVersion data not supplied

Nuclei templates

1
ProjectDiscoveryCRITICALrConfig 3.9 - Authentication Bypass(Admin Login)CVSS 9.8

lib/crud/userprocess.php in rConfig 3.9.x before 3.9.7 has an authentication bypass, leading to administrator account creation. This issue has been fixed in 3.9.7.

Impact

Unauthenticated attackers can bypass authentication to create administrator accounts, leading to complete control over the rConfig installation and access to all network device configurations.

Remediation

Upgrade to rConfig version 3.9.7 or later.

WeaknessesCWE-269
Authorstheamanrawat
Template tagscvecve2020rconfigauth-bypassintrusivevkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:rconfig:rconfig:*:*:*:*:*:*:*:*
Shodan: http.title:"rConfig"
Shodan: http.title:"rconfig"
FOFA: title="rconfig"
Google: intitle:"rconfig"

Source: ProjectDiscovery

References

2