vendor:
SmartFoxServer
by:
LiquidWorm
7.5
CVSS
HIGH
Remote Code Execution
CWE
Product Name: SmartFoxServer
Affected Version From: 2.17.0
Affected Version To: 2.17.0
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows, Linux, MacOS, Java, Python
2021
SmartFoxServer 2X 2.17.0 – God Mode Console Remote Code Execution
An authenticated attacker can execute remote arbitrary Python code after enabling and unlocking the undocumented console module.
Mitigation:
Unknown