CVE-2020-7209
CVE-2020-7209
Vexday Risk Score
60Attention
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS —EPSS 98.8%KEV nãoPoC públicaNuclei simMetasploit simPatch —
Lifecycle
12 Feb 2020Published on NVD
17 May 2020Metasploit module available
18 May 2020Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
LinuxKI v6.0-1 and earlier is vulnerable to an remote code execution which is resolved in release 6.0-2.
Affected products
n/a · LinuxKIpublic PoCs found — 3
cve_referencepacketstormsecurity.com/files/157739/HP-LinuxKI-6.01-Remote-Command-Injection.htmlunverifiedcve_referencepacketstormsecurity.com/files/158025/LinuxKI-Toolset-6.01-Remote-Command-Execution.htmlunverifiedexploitdbwww.exploit-db.com/exploits/48483unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →