Record summary

CVE-2024-2330 has a selected CVSS score of 6.3 (medium); EIP currently links 1 Nuclei template.

Description

A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3. It has been classified as critical. This affects an unknown part of the file /protocol/index.php. The manipulation of the argument IPAddr leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-256281 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Sep 26, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Mar 12, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus
CVE List, VulnCheck6.3affected

Default status: unknown

CVE List6.3affected

Nuclei templates

1
ProjectDiscoveryMEDIUMNS-ASG Application Security Gateway 6.3 - Sql InjectionCVSS 6.3

A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3. It has been classified as critical. This affects an unknown part of the file /protocol/index.php. The manipulation of the argument IPAddr leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Impact

Authenticated attackers can extract sensitive database information via SQL injection in the NS-ASG Application Security Gateway.

Remediation

Update NS-ASG Application Security Gateway to a version newer than 6.3.

WeaknessesCWE-89
Authorss4e-io
Template tagscvecve2024ns-asgsqlivkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Shodan: http.title:“NS-ASG”
FOFA: app="网康科技-NS-ASG安全网关"

Source: ProjectDiscovery

References

4