mirror of
https://github.com/0xMarcio/cve.git
synced 2025-06-19 17:30:12 +00:00
847 B
847 B
CVE-2014-3085
Description
systest.php on IBM GCM16 and GCM32 Global Console Manager switches with firmware before 1.20.20.23447 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the lpres parameter.
POC
Reference
- http://packetstormsecurity.com/files/127543/IBM-1754-GCM-KVM-Code-Execution-File-Read-XSS.html
- http://www.exploit-db.com/exploits/34132/
- http://www.ibm.com/support/entry/portal/docdisplay?lndocid=migr-5095983
Github
No PoCs found on GitHub currently.