vendor:
SevOne NMS
by:
@iamsecurity
9,8
CVSS
HIGH
Remote Code Execution
78
CWE
Product Name: SevOne NMS
Affected Version From: 5.3.6.0
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: a:sevone:sevone_nms
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2016
SevOne NMS <= 5.3.6.0 reverse shell remote root
This exploit allows an attacker to gain a reverse root shell on a vulnerable SevOne NMS server running version 5.3.6.0 or lower. The exploit works by sending a malicious payload to the SevOne PAS server, which is then executed by the server. The payload contains a python script that creates a reverse shell back to the attacker's machine.
Mitigation:
Upgrade to the latest version of SevOne NMS.