vendor:
Yachtcontrol Webapplication
by:
Hodorsec
7.5
CVSS
HIGH
Unauthenticated Remote Code Execution
78
CWE
Product Name: Yachtcontrol Webapplication
Affected Version From: Yachtcontrol webapplication through versions dated on 2019-10-06.
Affected Version To: Yachtcontrol webapplication through versions dated on 2019-10-06.
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Yachtcontrol webservers disclosed via Dutch GPRS/4G mobile IP-ranges.
2019
Yachtcontrol Webapplication 1.0 – Unauthenticated Remote Code Execution
It's possible to perform direct Operating System commands as an unauthenticated user via the "/pages/systemcall.php?command={COMMAND}" page and parameter, where {COMMAND} will be executed and returning the results to the client.
Mitigation:
Ensure that authentication is required for all system calls.