CVE-2020-37052
CRITICALUbiquiti AirControl 1.4.2 - Unauthenticated Remote Code Execution via Java Expression Injection in /.seam Endpoint
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-37052. PoCs published by 0xd0ff9.
AI-analyzed exploit summary This exploit leverages a pre-authentication remote code execution vulnerability in AirControl 1.4.2 via a crafted URL with EL injection. The payload uses Java reflection to execute arbitrary commands and retrieves the output from the Location header.
Description
AirControl 1.4.2 contains a pre-authentication remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary system commands through malicious Java expression injection. Attackers can exploit the /.seam endpoint by crafting a specially constructed URL with embedded Java expressions to run commands with the application's system privileges.
Exploits (1)
This exploit leverages a pre-authentication remote code execution vulnerability in AirControl 1.4.2 via a crafted URL with EL injection. The payload uses Java reflection to execute arbitrary commands and retrieves the output from the Location header.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H