9
CVSSv2

CVE-2020-13448

Published: 01/06/2020 Updated: 13/12/2021
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

QuickBox Community Edition up to and including 2.5.5 and Pro Edition up to and including 2.1.8 allows an authenticated remote malicious user to execute code on the server via command injection in the servicestart parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

quickbox quickbox

Exploits

QuickBox Pro versions 218 and below suffer from an authenticated remote code execution vulnerability ...