Vulnerability Description
Schmid ZI 620 V400 VPN 090 routers allow an attacker to execute OS commands as root via shell metacharacters to an entry on the SSH subcommand menu, as demonstrated by ping.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Schmid-Telecom | Zi 620 V400 Firmware | 090 |
| Schmid-Telecom | Zi 620 V400 | - |
Related Weaknesses (CWE)
References
- https://github.com/0xedh/someshit/blob/master/CVE-2020-6760.mdExploitThird Party Advisory
- https://github.com/0xedh/someshit/blob/master/CVE-2020-6760.mdExploitThird Party Advisory
FAQ
What is CVE-2020-6760?
CVE-2020-6760 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Schmid ZI 620 V400 VPN 090 routers allow an attacker to execute OS commands as root via shell metacharacters to an entry on the SSH subcommand menu, as demonstrated by ping.
How severe is CVE-2020-6760?
CVE-2020-6760 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-6760?
Check the references section above for vendor advisories and patch information. Affected products include: Schmid-Telecom Zi 620 V400 Firmware, Schmid-Telecom Zi 620 V400.