packetstormsecurity.com
http://packetstormsecurity.com/files/155898/PixelStor-5000-K-4.0.1580-20150629-Remote-Code-Execution.html CVE-2020-6756
CRITICAL
PixelStor 5000 K:4.0.1580-20150629 - Remote Code Execution
Record summary
CVE-2020-6756 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
languageOptions.php in Rasilient PixelStor 5000 K:4.0.1580-20150629 (KDI Version) allows unauthenticated attackers to remotely execute code via the lang parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBPixelStor 5000 K:4.0.1580-20150629 - Remote Code ExecutionExploitDB exploitby .:UND3R:.Not analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-6756 pwnedchile.com
https://pwnedchile.com/2020/01/08/pixelstor-5000-rce-exploit