mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-30 18:56:19 +00:00
20 lines
845 B
Markdown
20 lines
845 B
Markdown
### [CVE-2007-3010](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3010)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
masterCGI in the Unified Maintenance Tool in Alcatel OmniPCX Enterprise Communication Server R7.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the user parameter during a ping action.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- http://marc.info/?l=full-disclosure&m=119002152126755&w=2
|
|
- http://www.redteam-pentesting.de/advisories/rt-sa-2007-001.php
|
|
|
|
#### Github
|
|
- https://github.com/Ostorlab/KEV
|
|
- https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors
|
|
|