Vulnerability Description
Cayin CMS suffers from an authenticated OS semi-blind command injection vulnerability using default credentials. This can be exploited to inject and execute arbitrary shell commands as the root user through the 'NTP_Server_IP' HTTP POST parameter in system.cgi page. This issue affects several branches and versions of the CMS application, including CME-SE, CMS-60, CMS-40, CMS-20, and CMS version 8.2, 8.0, and 7.5.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cayintech | Cms-Se Firmware | 11.0 |
| Cayintech | Cms-Se | - |
| Cayintech | Cms-Se-Lxc Firmware | - |
| Cayintech | Cms-Se-Lxc | - |
| Cayintech | Cms-60 Firmware | 11.0 |
| Cayintech | Cms-60 | - |
| Cayintech | Cms-40 Firmware | 9.0 |
| Cayintech | Cms-40 | - |
| Cayintech | Cms-20 Firmware | 9.0 |
| Cayintech | Cms-20 | - |
| Cayintech | Cms | 7.5 |
Related Weaknesses (CWE)
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/182925Third Party AdvisoryVDB Entry
- https://github.com/rapid7/metasploit-framework/pull/13607ExploitPatch
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5570.phpExploitThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/182925Third Party AdvisoryVDB Entry
- https://github.com/rapid7/metasploit-framework/pull/13607ExploitPatch
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5570.phpExploitThird Party Advisory
FAQ
What is CVE-2020-7357?
CVE-2020-7357 is a vulnerability with a CVSS score of 9.6 (CRITICAL). Cayin CMS suffers from an authenticated OS semi-blind command injection vulnerability using default credentials. This can be exploited to inject and execute arbitrary shell commands as the root user t...
How severe is CVE-2020-7357?
CVE-2020-7357 has been rated CRITICAL with a CVSS base score of 9.6/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2020-7357?
Check the references section above for vendor advisories and patch information. Affected products include: Cayintech Cms-Se Firmware, Cayintech Cms-Se, Cayintech Cms-Se-Lxc Firmware, Cayintech Cms-Se-Lxc, Cayintech Cms-60 Firmware.