CVE-2020-25037

UCOPIA Wi-Fi appliances 6.0.5 allow arbitrary code execution with admin user privileges via an escape from a restricted command.
References
Link Resource
https://ucopia.com/en/solutions/product-line-wifi/ Product
https://blog.globadis.com/blog/ucopia-v6-multiple-cves-root/ Exploit Technical Description Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:ucopia:ucopia_wireless_appliance:*:*:*:*:*:*:*:*

Information

Published : 2021-02-01 21:15

Updated : 2021-02-04 11:30


NVD link : CVE-2020-25037

Mitre link : CVE-2020-25037


JSON object : View

CWE
CWE-434

Unrestricted Upload of File with Dangerous Type

Advertisement

dedicated server usa

Products Affected

ucopia

  • ucopia_wireless_appliance