CVE-2020-15921
CRITICALMida eFramework < 2.9.0 - Unauthenticated Backdoor Access and Code Execution
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-15921. PoCs published by elbae.
AI-analyzed exploit summary This exploit generates a backdoor access code for Mida eFramework 2.9.0 by leveraging a hardcoded algorithm based on the current date and a static string. The generated code can be used to bypass authentication and reset the admin password.
Description
Mida eFramework through 2.9.0 has a back door that permits a change of the administrative password and access to restricted functionalities, such as Code Execution.
Exploits (1)
This exploit generates a backdoor access code for Mida eFramework 2.9.0 by leveraging a hardcoded algorithm based on the current date and a static string. The generated code can be used to bypass authentication and reset the admin password.
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H