CVE-2020-16205

Using a specially crafted URL command, a remote authenticated user can execute commands as root on the G-Cam and G-Code (Firmware Versions 1.12.0.25 and prior as well as the limited Versions 1.12.13.2 and 1.12.14.5).
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.2 HIGH
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
icscertCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 98%
VendorProductVersion
geutebrueckg-cam_ebc-2110_firmware
1.12.0.25
geutebrueckg-cam_ebc-2110_firmware
1.12.13.2
geutebrueckg-cam_ebc-2110_firmware
1.12.14.5
geutebrueckg-cam_ebc-2111_firmware
1.12.0.25
geutebrueckg-cam_ebc-2111_firmware
1.12.13.2
geutebrueckg-cam_ebc-2111_firmware
1.12.14.5
geutebrueckg-cam_efd-2240_firmware
1.12.0.25
geutebrueckg-cam_efd-2240_firmware
1.12.13.2
geutebrueckg-cam_efd-2240_firmware
1.12.14.5
geutebrueckg-cam_efd-2241_firmware
1.12.0.25
geutebrueckg-cam_efd-2241_firmware
1.12.13.2
geutebrueckg-cam_efd-2241_firmware
1.12.14.5
geutebrueckg-cam_efd-2250_firmware
1.12.0.25
geutebrueckg-cam_efd-2250_firmware
1.12.13.2
geutebrueckg-cam_efd-2250_firmware
1.12.14.5
geutebrueckg-cam_ethc-2230_firmware
1.12.0.25
geutebrueckg-cam_ethc-2230_firmware
1.12.13.2
geutebrueckg-cam_ethc-2230_firmware
1.12.14.5
geutebrueckg-cam_ethc-2239_firmware
1.12.0.25
geutebrueckg-cam_ethc-2239_firmware
1.12.13.2
geutebrueckg-cam_ethc-2239_firmware
1.12.14.5
geutebrueckg-cam_ethc-2240_firmware
1.12.0.25
geutebrueckg-cam_ethc-2240_firmware
1.12.13.2
geutebrueckg-cam_ethc-2240_firmware
1.12.14.5
geutebrueckg-cam_ethc-2249_firmware
1.12.0.25
geutebrueckg-cam_ethc-2249_firmware
1.12.13.2
geutebrueckg-cam_ethc-2249_firmware
1.12.14.5
geutebrueckg-cam_ewpc-2270_firmware
1.12.0.25
geutebrueckg-cam_ewpc-2270_firmware
1.12.13.2
geutebrueckg-cam_ewpc-2270_firmware
1.12.14.5
geutebrueckg-code_eec-2400_firmware
1.12.0.25
geutebrueckg-code_eec-2400_firmware
1.12.13.2
geutebrueckg-code_eec-2400_firmware
1.12.14.5
𝑥
= Vulnerable software versions