Vulnerability Description
The Kommbox component in Rangee GmbH RangeeOS 8.0.4 is vulnerable to Remote Code Execution due to untrusted user supplied input being passed to the command line without sanitization.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rangee | Rangeeos | 8.0.4 |
Related Weaknesses (CWE)
References
- https://www.contextis.com/en/resources/advisories/cve-2020-16279Third Party Advisory
- https://www.contextis.com/en/resources/advisories/cve-2020-16279Third Party Advisory
FAQ
What is CVE-2020-16279?
CVE-2020-16279 is a vulnerability with a CVSS score of 9.8 (CRITICAL). The Kommbox component in Rangee GmbH RangeeOS 8.0.4 is vulnerable to Remote Code Execution due to untrusted user supplied input being passed to the command line without sanitization.
How severe is CVE-2020-16279?
CVE-2020-16279 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-16279?
Check the references section above for vendor advisories and patch information. Affected products include: Rangee Rangeeos.