← back
CVE-2011-10017criticalCWE-78

Snort Report nmap.php/nbtscan.php RCE

63Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendcvss 10epss 1.9%
from disclosure to weapon0 days
Published on NVDAug 13
metasploitSep 19
exploitation probability
1.9%top 22% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Snort Report versions < 1.3.2 contains a remote command execution vulnerability in the nmap.php and nbtscan.php scripts. These scripts fail to properly sanitize user input passed via the target GET parameter, allowing attackers to inject arbitrary shell commands. Exploitation requires no authentication and can result in full compromise of the underlying system.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.