UCOPIA Wi-Fi appliances 6.0.5 allow arbitrary code execution with admin user privileges via an escape from a restricted command.
References
Link | Resource |
---|---|
https://ucopia.com/en/solutions/product-line-wifi/ | Product |
https://blog.globadis.com/blog/ucopia-v6-multiple-cves-root/ | Exploit Technical Description Third Party Advisory |
Configurations
Information
Published : 2021-02-01 21:15
Updated : 2021-02-04 11:30
NVD link : CVE-2020-25037
Mitre link : CVE-2020-25037
JSON object : View
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
Products Affected
ucopia
- ucopia_wireless_appliance