8.8
CVSSv3

CVE-2023-0830

Published: 14/02/2023 Updated: 11/04/2024
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A vulnerability classified as critical has been found in EasyNAS 1.1.0. Affected is the function system of the file /backup.pl. The manipulation leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to upgrade the affected component. VDB-220950 is the identifier assigned to this vulnerability.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

easynas easynas 1.1.0

Exploits

EasyNas version 110 suffers from a command injection vulnerability ...

Github Repositories

CVE-2023-0830: EasyNAS 110 Authenticated OS Command Injection Exploit This Python script is a powerful exploit for EasyNAS version 110 The vulnerability exploited is a command injection flaw, which requires authentication The script begins by establishing a session with the target server, then sends a login request with user-provided credentials Upon successful authentic