From a78977d57516ee7d6bb0e09540a2b9e91c87b119 Mon Sep 17 00:00:00 2001 From: Goby <50955360+gobysec@users.noreply.github.com> Date: Sat, 1 Apr 2023 12:36:52 +0800 Subject: [PATCH] Create CVE-2022-27373.md add CVE-2022-27373 --- CVE-2022-27373.md | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 CVE-2022-27373.md diff --git a/CVE-2022-27373.md b/CVE-2022-27373.md new file mode 100644 index 0000000..f61b405 --- /dev/null +++ b/CVE-2022-27373.md @@ -0,0 +1,12 @@ +## PHICOMM FIR302B management.cgi RCE (CVE-2022-27373) + +| **Vulnerability** | **PHICOMM FIR302B management.cgi RCE (CVE-2022-27373)** | +| :----: | :-----| +| **Chinese name** | 斐讯 FIR302B management.cgi 远程命令执行漏洞 (CVE-2022-27373) | +| **CVSS core** | 9.0 | +| **FOFA Query** (click to view the results directly)| [title="FIR302B"](https://fofa.info/result?qbase64=dGl0bGU9IkZJUjMwMkIi) | +| **Number of assets affected** | 14766 | +| **Description** | phicomm Feixun fir302b is a router of Shanghai Feixun Data Communication Technology Co., Ltd. (phicomm), China. Feixun fir302b has a security vulnerability that stems from the discovery of a Remote Command Execution (RCE) vulnerability through the Ping function. | +| **Impact** | Feixun fir302b has a security vulnerability that stems from the discovery of a Remote Command Execution (RCE) vulnerability through the Ping function. | + +![](https://s3.bmp.ovh/imgs/2023/04/01/3a6df3f44e86bfc0.gif)