Record summary

CVE-2023-0830 has a selected CVSS score of 5.3 (medium); EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

A vulnerability classified as critical has been found in EasyNAS 1.1.0. Affected is the function system of the file /backup.pl. The manipulation leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1
Repository PoCs
1

Affected products and versions

1
ProductSourceVersion rangeStatus

EasyNAS

CVE List1.1.0affected

Proofs of concept

2

Catalogued exploits

ExploitDBEasyNas 1.1.0 - OS Command InjectionExploitDB exploitby Ivan SpiridonovNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubxbz0n/CVE-2023-0830Repository PoCby xbz0nStars: 1Not analyzed2 files

26.6 KiB

GitHub

PoC details

References

7