Exploitation Summary
EIP tracks 1 public exploit for CVE-2020-8636. PoCs published by phor3nsic.
AI-analyzed exploit summary The repository contains a functional exploit for CVE-2020-8636, which abuses the `nettools.php` endpoint in Opmon to achieve authenticated remote code execution by fetching and executing a malicious Nmap script.
Description
An issue was discovered in OpServices OpMon 9.3.2 that allows Remote Code Execution .
Exploits (1)
nomisec
WORKING POC
2 stars
by phor3nsic · poc
https://github.com/phor3nsic/opmonster
The repository contains a functional exploit for CVE-2020-8636, which abuses the `nettools.php` endpoint in Opmon to achieve authenticated remote code execution by fetching and executing a malicious Nmap script.
Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target:
Opmon monitoring platform
Auth required
Prerequisites:
Access to a target Opmon instance · Ability to host a malicious .nse script on an accessible server · Valid credentials for authenticated access
MITRE ATT&CK
devstral-2 · analyzed Jun 25, 2026
Full analysis →
References (1)
Core 1
Core References
Various Sources x_refsource_misc
https://medium.com/%40ph0rensic/three-cves-on-opmon-3ca775a262f5
Scores
CVSS v3
9.8
EPSS
0.0401
EPSS Percentile
89.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-306
Status
published
Products (1)
opservices/opmon
9.3.2
Published
Feb 06, 2020
Tracked Since
Feb 18, 2026