nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-13638 CVE-2020-13638
CRITICALNuclei
rConfig rConfig Improper Privilege Management
Record summary
CVE-2020-13638 has a selected CVSS score of 9.8 (critical); EIP currently links 1 Nuclei template.
Description
lib/crud/userprocess.php in rConfig 3.9.x before 3.9.7 has an authentication bypass, leading to administrator account creation. This issue has been fixed in 3.9.7.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Dec 19, 2023 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Nuclei templates
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
rConfigBrowse rConfig / rConfig | VulnCheck | Version data not supplied | |
Nuclei templates
1ProjectDiscoveryCRITICALrConfig 3.9 - Authentication Bypass(Admin Login)CVSS 9.8
lib/crud/userprocess.php in rConfig 3.9.x before 3.9.7 has an authentication bypass, leading to administrator account creation. This issue has been fixed in 3.9.7.
Impact
Unauthenticated attackers can bypass authentication to create administrator accounts, leading to complete control over the rConfig installation and access to all network device configurations.
Remediation
Upgrade to rConfig version 3.9.7 or later.
WeaknessesCWE-269
Authorstheamanrawat
Template tagscvecve2020rconfigauth-bypassintrusivevkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:rconfig:rconfig:*:*:*:*:*:*:*:*
Shodan: http.title:"rConfig"
Shodan: http.title:"rconfig"
FOFA: title="rconfig"
Google: intitle:"rconfig"
https://www.rconfig.com/downloads/rconfig-3.9.4.zip https://theguly.github.io/2020/09/rconfig-3.9.4-multiple-vulnerabilities/ https://nvd.nist.gov/vuln/detail/CVE-2020-13638
Source: ProjectDiscovery
References
2theguly.github.io
https://theguly.github.io/2020/09/rconfig-3.9.4-multiple-vulnerabilities