vendor:
Maltrail
by:
Iyaad Luqman K (init_6)
7.5
CVSS
HIGH
Unauthenticated Remote Code Execution (RCE)
CWE
Product Name: Maltrail
Affected Version From: v0.53
Affected Version To: v0.53
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Ubuntu 22.04
Maltrail v0.53 – Unauthenticated Remote Code Execution (RCE)
This exploit allows an attacker to execute arbitrary code on the target system without authentication. By providing a specially crafted payload, the attacker can gain remote access and control over the system.
Mitigation:
To mitigate this vulnerability, it is recommended to update the Maltrail application to the latest version or apply any available patches provided by the vendor.