OpenNetAdmin os command injection
70Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actcvss 6.3epss 6.6%
from disclosure to weapon897 days
Published on NVDJun 9
1st PoC+897d
metasploitNov 19
VulnCheck+583d
exploitation probability
6.6%top 7% of all CVEs
observed exploitation
yesVulnCheck
2 public exploit(s)
A vulnerability was found in OpenNetAdmin 18.1.1. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to privilege escalation. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Affected products
unspecified · OpenNetAdminpublic PoCs found — 2
vulncheckvulncheck.com/xdb/e1e69c914071unverifiedvulncheckvulncheck.com/xdb/75a9542850c6unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.